[Git][security-tracker-team/security-tracker][master] xpdf n/a

Moritz Muehlenhoff jmm at debian.org
Fri Oct 26 15:42:14 BST 2018


Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker


Commits:
0f13f3c7 by Moritz Muehlenhoff at 2018-10-26T14:41:43Z
xpdf n/a
salt no-dsa

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -9,9 +9,9 @@ CVE-2018-18654 (Crossroads 2.81 does not properly handle the /tmp directory duri
 	- crossroads <unfixed> (unimportant; bug #911877)
 	NOTE: Issue exploitable only during build of package
 CVE-2018-18651 (An issue was discovered in Xpdf 4.00. catalog->getNumPages() in ...)
-	TODO: check
+	- xpdf <not-affected> (xpdf in Debian uses poppler, which is not affected or fixed)
 CVE-2018-18650 (An issue was discovered in Xpdf 4.00. XRef::readXRefStream in XRef.cc ...)
-	TODO: check
+	- xpdf <not-affected> (xpdf in Debian uses poppler, which is not affected or fixed)
 CVE-2018-18649
 	RESERVED
 CVE-2018-18648
@@ -7160,6 +7160,7 @@ CVE-2018-15751 (SaltStack Salt before 2017.7.8 and 2018.3.x before 2018.3.3 allo
 	NOTE: Fixed in 2017.7.8, 2018.3.3
 CVE-2018-15750 (Directory Traversal vulnerability in salt-api in SaltStack Salt before ...)
 	- salt <unfixed>
+	[stretch] - salt <no-dsa> (Minor issue)
 	NOTE: Fixed in 2017.7.8, 2018.3.3
 CVE-2018-15749 (The Pulse Secure Desktop (macOS) 5.3RX before 5.3R5 and 9.0R1 has a ...)
 	NOT-FOR-US: Pulse Secure Desktop



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/0f13f3c77439b9ded9b4e2c190a5b480caf98aad

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/0f13f3c77439b9ded9b4e2c190a5b480caf98aad
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20181026/0cc56400/attachment.html>


More information about the debian-security-tracker-commits mailing list