[Git][security-tracker-team/security-tracker][master] CVE-2014-7954: mark NFU (previously adb)

Sylvain Beucler beuc at debian.org
Tue Apr 9 15:58:05 BST 2019



Sylvain Beucler pushed to branch master at Debian Security Tracker / security-tracker


Commits:
25afd5e8 by Sylvain Beucler at 2019-04-09T14:57:28Z
CVE-2014-7954: mark NFU (previously adb)

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -195208,7 +195208,9 @@ CVE-2014-7954 (Directory traversal vulnerability in the doSendObjectInfo method
 CVE-2014-7953 (Race condition in the bindBackupAgent method in the ActivityManagerSer ...)
 	NOT-FOR-US: Android
 CVE-2014-7952 (The backup mechanism in the adb tool in Android might allow attackers  ...)
-	- android-platform-system-core <undetermined>
+	NOT-FOR-US: Android
+	NOTE: the vulnerability is in the Android OS itself (and its backup manager)
+	NOTE: adb is just an intermediary in the backup process
 CVE-2014-7951
 	RESERVED
 CVE-2014-7950



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/25afd5e8c5694ad5b3b2a8e7a310746c9c005ce5

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/25afd5e8c5694ad5b3b2a8e7a310746c9c005ce5
You're receiving this email because of your account on salsa.debian.org.

-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20190409/a3c5392b/attachment.html>


More information about the debian-security-tracker-commits mailing list