[Git][security-tracker-team/security-tracker][master] Update information for CVE-2018-1051 and CVE-2016-9606
Salvatore Bonaccorso
carnil at debian.org
Fri Sep 14 20:33:08 BST 2018
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits:
d3e0a286 by Salvatore Bonaccorso at 2018-09-14T19:32:33Z
Update information for CVE-2018-1051 and CVE-2016-9606
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -43712,7 +43712,7 @@ CVE-2018-1052 (Memory disclosure vulnerability in table partitioning was found i
CVE-2018-1051 (It was found that the fix for CVE-2016-9606 in versions 3.0.22 and ...)
- resteasy <undetermined>
[jessie] - resteasy <not-affected> (Incomplete fix for CVE-2016-9606 wasn't backported)
- - resteasy3.0 <undetermined>
+ - resteasy3.0 <not-affected> (Incomplete fix for CVE-2016-9606 not applied)
TODO: check
CVE-2018-1050 (All versions of Samba from 4.0.0 onwards are vulnerable to a denial of ...)
{DSA-4135-1 DLA-1320-1}
@@ -96728,7 +96728,7 @@ CVE-2016-9607
CVE-2016-9606 (JBoss RESTEasy before version 3.1.2 could be forced into parsing a ...)
- resteasy 3.1.4-1 (bug #851430)
[jessie] - resteasy <no-dsa> (Minor issue)
- - resteasy3.0 <undetermined>
+ - resteasy3.0 <unfixed>
NOTE: See CVE-2018-1051 to address original incomplete fix for CVE-2016-9606
CVE-2016-9605 (A flaw was found in cobbler software component version 2.6.11-1. It ...)
- cobbler <removed> (bug #858844)
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/d3e0a286fba5fed94a6cfd9ff72a3a7c5dbce7f0
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/d3e0a286fba5fed94a6cfd9ff72a3a7c5dbce7f0
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20180914/939b14a4/attachment.html>
More information about the debian-security-tracker-commits
mailing list