[Git][security-tracker-team/security-tracker][master] automatic update

Salvatore Bonaccorso carnil at debian.org
Mon Jan 7 20:10:32 GMT 2019


Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
63d47105 by security tracker role at 2019-01-07T20:10:23Z
automatic update

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -1,4 +1,256 @@
-CVE-2019-5489 [Change mincore() to count "mapped" pages rather than "cached" pages]
+CVE-2019-5614
+	RESERVED
+CVE-2019-5613
+	RESERVED
+CVE-2019-5612
+	RESERVED
+CVE-2019-5611
+	RESERVED
+CVE-2019-5610
+	RESERVED
+CVE-2019-5609
+	RESERVED
+CVE-2019-5608
+	RESERVED
+CVE-2019-5607
+	RESERVED
+CVE-2019-5606
+	RESERVED
+CVE-2019-5605
+	RESERVED
+CVE-2019-5604
+	RESERVED
+CVE-2019-5603
+	RESERVED
+CVE-2019-5602
+	RESERVED
+CVE-2019-5601
+	RESERVED
+CVE-2019-5600
+	RESERVED
+CVE-2019-5599
+	RESERVED
+CVE-2019-5598
+	RESERVED
+CVE-2019-5597
+	RESERVED
+CVE-2019-5596
+	RESERVED
+CVE-2019-5595
+	RESERVED
+CVE-2019-5594
+	RESERVED
+CVE-2019-5593
+	RESERVED
+CVE-2019-5592
+	RESERVED
+CVE-2019-5591
+	RESERVED
+CVE-2019-5590
+	RESERVED
+CVE-2019-5589
+	RESERVED
+CVE-2019-5588
+	RESERVED
+CVE-2019-5587
+	RESERVED
+CVE-2019-5586
+	RESERVED
+CVE-2019-5585
+	RESERVED
+CVE-2019-5584
+	RESERVED
+CVE-2019-5583
+	RESERVED
+CVE-2019-5582
+	RESERVED
+CVE-2019-5581
+	RESERVED
+CVE-2019-5580
+	RESERVED
+CVE-2019-5579
+	RESERVED
+CVE-2019-5578
+	RESERVED
+CVE-2019-5577
+	RESERVED
+CVE-2019-5576
+	RESERVED
+CVE-2019-5575
+	RESERVED
+CVE-2019-5574
+	RESERVED
+CVE-2019-5573
+	RESERVED
+CVE-2019-5572
+	RESERVED
+CVE-2019-5571
+	RESERVED
+CVE-2019-5570
+	RESERVED
+CVE-2019-5569
+	RESERVED
+CVE-2019-5568
+	RESERVED
+CVE-2019-5567
+	RESERVED
+CVE-2019-5566
+	RESERVED
+CVE-2019-5565
+	RESERVED
+CVE-2019-5564
+	RESERVED
+CVE-2019-5563
+	RESERVED
+CVE-2019-5562
+	RESERVED
+CVE-2019-5561
+	RESERVED
+CVE-2019-5560
+	RESERVED
+CVE-2019-5559
+	RESERVED
+CVE-2019-5558
+	RESERVED
+CVE-2019-5557
+	RESERVED
+CVE-2019-5556
+	RESERVED
+CVE-2019-5555
+	RESERVED
+CVE-2019-5554
+	RESERVED
+CVE-2019-5553
+	RESERVED
+CVE-2019-5552
+	RESERVED
+CVE-2019-5551
+	RESERVED
+CVE-2019-5550
+	RESERVED
+CVE-2019-5549
+	RESERVED
+CVE-2019-5548
+	RESERVED
+CVE-2019-5547
+	RESERVED
+CVE-2019-5546
+	RESERVED
+CVE-2019-5545
+	RESERVED
+CVE-2019-5544
+	RESERVED
+CVE-2019-5543
+	RESERVED
+CVE-2019-5542
+	RESERVED
+CVE-2019-5541
+	RESERVED
+CVE-2019-5540
+	RESERVED
+CVE-2019-5539
+	RESERVED
+CVE-2019-5538
+	RESERVED
+CVE-2019-5537
+	RESERVED
+CVE-2019-5536
+	RESERVED
+CVE-2019-5535
+	RESERVED
+CVE-2019-5534
+	RESERVED
+CVE-2019-5533
+	RESERVED
+CVE-2019-5532
+	RESERVED
+CVE-2019-5531
+	RESERVED
+CVE-2019-5530
+	RESERVED
+CVE-2019-5529
+	RESERVED
+CVE-2019-5528
+	RESERVED
+CVE-2019-5527
+	RESERVED
+CVE-2019-5526
+	RESERVED
+CVE-2019-5525
+	RESERVED
+CVE-2019-5524
+	RESERVED
+CVE-2019-5523
+	RESERVED
+CVE-2019-5522
+	RESERVED
+CVE-2019-5521
+	RESERVED
+CVE-2019-5520
+	RESERVED
+CVE-2019-5519
+	RESERVED
+CVE-2019-5518
+	RESERVED
+CVE-2019-5517
+	RESERVED
+CVE-2019-5516
+	RESERVED
+CVE-2019-5515
+	RESERVED
+CVE-2019-5514
+	RESERVED
+CVE-2019-5513
+	RESERVED
+CVE-2019-5512
+	RESERVED
+CVE-2019-5511
+	RESERVED
+CVE-2019-5510
+	RESERVED
+CVE-2019-5509
+	RESERVED
+CVE-2019-5508
+	RESERVED
+CVE-2019-5507
+	RESERVED
+CVE-2019-5506
+	RESERVED
+CVE-2019-5505
+	RESERVED
+CVE-2019-5504
+	RESERVED
+CVE-2019-5503
+	RESERVED
+CVE-2019-5502
+	RESERVED
+CVE-2019-5501
+	RESERVED
+CVE-2019-5500
+	RESERVED
+CVE-2019-5499
+	RESERVED
+CVE-2019-5498
+	RESERVED
+CVE-2019-5497
+	RESERVED
+CVE-2019-5496
+	RESERVED
+CVE-2019-5495
+	RESERVED
+CVE-2019-5494
+	RESERVED
+CVE-2019-5493
+	RESERVED
+CVE-2019-5492
+	RESERVED
+CVE-2019-5491
+	RESERVED
+CVE-2019-5490
+	RESERVED
+CVE-2019-5488 (EARCLINK ESPCMS-P8 has SQL injection in the ...)
+	TODO: check
+CVE-2019-5489 (The mincore() implementation in mm/mincore.c in the Linux kernel ...)
 	- linux <unfixed>
 	NOTE: https://git.kernel.org/linus/574823bfab82d9d8fa47f422778043fbb4b4f50e (5.0-rc1)
 CVE-2019-5487
@@ -29884,41 +30136,41 @@ CVE-2018-13279
 CVE-2018-13278
 	RESERVED
 CVE-2018-13277
-	RESERVED
+	REJECTED
 CVE-2018-13276
-	RESERVED
+	REJECTED
 CVE-2018-13275
-	RESERVED
+	REJECTED
 CVE-2018-13274
-	RESERVED
+	REJECTED
 CVE-2018-13273
-	RESERVED
+	REJECTED
 CVE-2018-13272
-	RESERVED
+	REJECTED
 CVE-2018-13271
-	RESERVED
+	REJECTED
 CVE-2018-13270
-	RESERVED
+	REJECTED
 CVE-2018-13269
-	RESERVED
+	REJECTED
 CVE-2018-13268
-	RESERVED
+	REJECTED
 CVE-2018-13267
-	RESERVED
+	REJECTED
 CVE-2018-13266
-	RESERVED
+	REJECTED
 CVE-2018-13265
-	RESERVED
+	REJECTED
 CVE-2018-13264
-	RESERVED
+	REJECTED
 CVE-2018-13263
-	RESERVED
+	REJECTED
 CVE-2018-13262
-	RESERVED
+	REJECTED
 CVE-2018-13261
-	RESERVED
+	REJECTED
 CVE-2018-13260
-	RESERVED
+	REJECTED
 CVE-2018-13259 (An issue was discovered in zsh before 5.6. Shebang lines exceeding 64 ...)
 	- zsh 5.6-1 (bug #908000)
 	[stretch] - zsh <no-dsa> (Minor issue)
@@ -33920,8 +34172,8 @@ CVE-2018-11800
 	RESERVED
 CVE-2018-11799 (Vulnerability allows a user of Apache Oozie 3.1.3-incubating to 5.0.0 ...)
 	NOT-FOR-US: Apache Oozie
-CVE-2018-11798
-	RESERVED
+CVE-2018-11798 (The Apache Thrift Node.js static web server in versions 0.9.2 through ...)
+	TODO: check
 CVE-2018-11797 (In Apache PDFBox 1.8.0 to 1.8.15 and 2.0.0RC1 to 2.0.11, a carefully ...)
 	{DLA-1547-1}
 	- libpdfbox-java 1:1.8.16-1 (bug #910390)
@@ -33949,8 +34201,7 @@ CVE-2018-11790
 	RESERVED
 CVE-2018-11789
 	RESERVED
-CVE-2018-11788
-	RESERVED
+CVE-2018-11788 (Apache Karaf provides a features deployer, which allows users to "hot ...)
 	- apache-karaf <itp> (bug #881297)
 CVE-2018-11787 (In Apache Karaf version prior to 3.0.9, 4.0.9, 4.1.1, when the ...)
 	- apache-karaf <itp> (bug #881297)
@@ -52030,8 +52281,8 @@ CVE-2018-5483
 	RESERVED
 CVE-2018-5482
 	RESERVED
-CVE-2018-5481
-	RESERVED
+CVE-2018-5481 (OnCommand Unified Manager for 7-Mode (core package) prior to 5.2.4 ...)
+	TODO: check
 CVE-2018-5480
 	RESERVED
 CVE-2018-5479 (FoxSash ImgHosting 1.5 (according to footer information) is vulnerable ...)
@@ -52181,8 +52432,8 @@ CVE-2018-5412
 	RESERVED
 CVE-2018-5411 (Pixar's Tractor software, versions 2.2 and earlier, contain a stored ...)
 	NOT-FOR-US: Pixar Tractor
-CVE-2018-5410
-	RESERVED
+CVE-2018-5410 (Dokan, versions between 1.0.0.5000 and 1.2.0.1000, are vulnerable to a ...)
+	TODO: check
 CVE-2018-5409
 	RESERVED
 CVE-2018-5408
@@ -63845,8 +64096,8 @@ CVE-2018-1322 (An administrator with user search entitlements in Apache Syncope
 	NOT-FOR-US: Apache Syncope
 CVE-2018-1321 (An administrator with report and template entitlements in Apache ...)
 	NOT-FOR-US: Apache Syncope
-CVE-2018-1320
-	RESERVED
+CVE-2018-1320 (Apache Thrift Java client library versions 0.5.0 through 0.11.0 can ...)
+	TODO: check
 CVE-2018-1319 (In Apache Allura prior to 1.8.1, attackers may craft URLs that cause ...)
 	NOT-FOR-US: Apache Allura
 CVE-2018-1318 (Adding method ACLs in remap.config can cause a segfault when the user ...)
@@ -173913,7 +174164,7 @@ CVE-2015-4468 (Multiple integer overflows in the search_chunk function in chmd.c
 CVE-2015-4467 (The chmd_init_decomp function in chmd.c in libmspack before 0.5 does ...)
 	- libmspack 0.4-3 (bug #774725)
 	NOTE: http://www.openwall.com/lists/oss-security/2015/02/03/11
-CVE-2015-9275 [directory traversal]
+CVE-2015-9275 (ARC 5.21q allows directory traversal via a full pathname in an archive ...)
 	- arc 5.21q-6 (low; bug #774527)
 	[stretch] - arc <ignored> (Minor issue)
 	[jessie] - arc <ignored> (Minor issue)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/63d47105575c8954b162b78e42e1b9c96450d1cc

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/63d47105575c8954b162b78e42e1b9c96450d1cc
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20190107/305e409f/attachment.html>


More information about the debian-security-tracker-commits mailing list