[Git][security-tracker-team/security-tracker][master] automatic update

Salvatore Bonaccorso carnil at debian.org
Thu Jan 10 20:10:31 GMT 2019


Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
cf449e4b by security tracker role at 2019-01-10T20:10:22Z
automatic update

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -1,3 +1,451 @@
+CVE-2019-6108
+	RESERVED
+CVE-2019-6107
+	RESERVED
+CVE-2019-6106
+	RESERVED
+CVE-2019-6105
+	RESERVED
+CVE-2019-6104
+	RESERVED
+CVE-2019-6103
+	RESERVED
+CVE-2019-6102
+	RESERVED
+CVE-2019-6101
+	RESERVED
+CVE-2019-6100
+	RESERVED
+CVE-2019-6099
+	RESERVED
+CVE-2019-6098
+	RESERVED
+CVE-2019-6097
+	RESERVED
+CVE-2019-6096
+	RESERVED
+CVE-2019-6095
+	RESERVED
+CVE-2019-6094
+	RESERVED
+CVE-2019-6093
+	RESERVED
+CVE-2019-6092
+	RESERVED
+CVE-2019-6091
+	RESERVED
+CVE-2019-6090
+	RESERVED
+CVE-2019-6089
+	RESERVED
+CVE-2019-6088
+	RESERVED
+CVE-2019-6087
+	RESERVED
+CVE-2019-6086
+	RESERVED
+CVE-2019-6085
+	RESERVED
+CVE-2019-6084
+	RESERVED
+CVE-2019-6083
+	RESERVED
+CVE-2019-6082
+	RESERVED
+CVE-2019-6081
+	RESERVED
+CVE-2019-6080
+	RESERVED
+CVE-2019-6079
+	RESERVED
+CVE-2019-6078
+	RESERVED
+CVE-2019-6077
+	RESERVED
+CVE-2019-6076
+	RESERVED
+CVE-2019-6075
+	RESERVED
+CVE-2019-6074
+	RESERVED
+CVE-2019-6073
+	RESERVED
+CVE-2019-6072
+	RESERVED
+CVE-2019-6071
+	RESERVED
+CVE-2019-6070
+	RESERVED
+CVE-2019-6069
+	RESERVED
+CVE-2019-6068
+	RESERVED
+CVE-2019-6067
+	RESERVED
+CVE-2019-6066
+	RESERVED
+CVE-2019-6065
+	RESERVED
+CVE-2019-6064
+	RESERVED
+CVE-2019-6063
+	RESERVED
+CVE-2019-6062
+	RESERVED
+CVE-2019-6061
+	RESERVED
+CVE-2019-6060
+	RESERVED
+CVE-2019-6059
+	RESERVED
+CVE-2019-6058
+	RESERVED
+CVE-2019-6057
+	RESERVED
+CVE-2019-6056
+	RESERVED
+CVE-2019-6055
+	RESERVED
+CVE-2019-6054
+	RESERVED
+CVE-2019-6053
+	RESERVED
+CVE-2019-6052
+	RESERVED
+CVE-2019-6051
+	RESERVED
+CVE-2019-6050
+	RESERVED
+CVE-2019-6049
+	RESERVED
+CVE-2019-6048
+	RESERVED
+CVE-2019-6047
+	RESERVED
+CVE-2019-6046
+	RESERVED
+CVE-2019-6045
+	RESERVED
+CVE-2019-6044
+	RESERVED
+CVE-2019-6043
+	RESERVED
+CVE-2019-6042
+	RESERVED
+CVE-2019-6041
+	RESERVED
+CVE-2019-6040
+	RESERVED
+CVE-2019-6039
+	RESERVED
+CVE-2019-6038
+	RESERVED
+CVE-2019-6037
+	RESERVED
+CVE-2019-6036
+	RESERVED
+CVE-2019-6035
+	RESERVED
+CVE-2019-6034
+	RESERVED
+CVE-2019-6033
+	RESERVED
+CVE-2019-6032
+	RESERVED
+CVE-2019-6031
+	RESERVED
+CVE-2019-6030
+	RESERVED
+CVE-2019-6029
+	RESERVED
+CVE-2019-6028
+	RESERVED
+CVE-2019-6027
+	RESERVED
+CVE-2019-6026
+	RESERVED
+CVE-2019-6025
+	RESERVED
+CVE-2019-6024
+	RESERVED
+CVE-2019-6023
+	RESERVED
+CVE-2019-6022
+	RESERVED
+CVE-2019-6021
+	RESERVED
+CVE-2019-6020
+	RESERVED
+CVE-2019-6019
+	RESERVED
+CVE-2019-6018
+	RESERVED
+CVE-2019-6017
+	RESERVED
+CVE-2019-6016
+	RESERVED
+CVE-2019-6015
+	RESERVED
+CVE-2019-6014
+	RESERVED
+CVE-2019-6013
+	RESERVED
+CVE-2019-6012
+	RESERVED
+CVE-2019-6011
+	RESERVED
+CVE-2019-6010
+	RESERVED
+CVE-2019-6009
+	RESERVED
+CVE-2019-6008
+	RESERVED
+CVE-2019-6007
+	RESERVED
+CVE-2019-6006
+	RESERVED
+CVE-2019-6005
+	RESERVED
+CVE-2019-6004
+	RESERVED
+CVE-2019-6003
+	RESERVED
+CVE-2019-6002
+	RESERVED
+CVE-2019-6001
+	RESERVED
+CVE-2019-6000
+	RESERVED
+CVE-2019-5999
+	RESERVED
+CVE-2019-5998
+	RESERVED
+CVE-2019-5997
+	RESERVED
+CVE-2019-5996
+	RESERVED
+CVE-2019-5995
+	RESERVED
+CVE-2019-5994
+	RESERVED
+CVE-2019-5993
+	RESERVED
+CVE-2019-5992
+	RESERVED
+CVE-2019-5991
+	RESERVED
+CVE-2019-5990
+	RESERVED
+CVE-2019-5989
+	RESERVED
+CVE-2019-5988
+	RESERVED
+CVE-2019-5987
+	RESERVED
+CVE-2019-5986
+	RESERVED
+CVE-2019-5985
+	RESERVED
+CVE-2019-5984
+	RESERVED
+CVE-2019-5983
+	RESERVED
+CVE-2019-5982
+	RESERVED
+CVE-2019-5981
+	RESERVED
+CVE-2019-5980
+	RESERVED
+CVE-2019-5979
+	RESERVED
+CVE-2019-5978
+	RESERVED
+CVE-2019-5977
+	RESERVED
+CVE-2019-5976
+	RESERVED
+CVE-2019-5975
+	RESERVED
+CVE-2019-5974
+	RESERVED
+CVE-2019-5973
+	RESERVED
+CVE-2019-5972
+	RESERVED
+CVE-2019-5971
+	RESERVED
+CVE-2019-5970
+	RESERVED
+CVE-2019-5969
+	RESERVED
+CVE-2019-5968
+	RESERVED
+CVE-2019-5967
+	RESERVED
+CVE-2019-5966
+	RESERVED
+CVE-2019-5965
+	RESERVED
+CVE-2019-5964
+	RESERVED
+CVE-2019-5963
+	RESERVED
+CVE-2019-5962
+	RESERVED
+CVE-2019-5961
+	RESERVED
+CVE-2019-5960
+	RESERVED
+CVE-2019-5959
+	RESERVED
+CVE-2019-5958
+	RESERVED
+CVE-2019-5957
+	RESERVED
+CVE-2019-5956
+	RESERVED
+CVE-2019-5955
+	RESERVED
+CVE-2019-5954
+	RESERVED
+CVE-2019-5953
+	RESERVED
+CVE-2019-5952
+	RESERVED
+CVE-2019-5951
+	RESERVED
+CVE-2019-5950
+	RESERVED
+CVE-2019-5949
+	RESERVED
+CVE-2019-5948
+	RESERVED
+CVE-2019-5947
+	RESERVED
+CVE-2019-5946
+	RESERVED
+CVE-2019-5945
+	RESERVED
+CVE-2019-5944
+	RESERVED
+CVE-2019-5943
+	RESERVED
+CVE-2019-5942
+	RESERVED
+CVE-2019-5941
+	RESERVED
+CVE-2019-5940
+	RESERVED
+CVE-2019-5939
+	RESERVED
+CVE-2019-5938
+	RESERVED
+CVE-2019-5937
+	RESERVED
+CVE-2019-5936
+	RESERVED
+CVE-2019-5935
+	RESERVED
+CVE-2019-5934
+	RESERVED
+CVE-2019-5933
+	RESERVED
+CVE-2019-5932
+	RESERVED
+CVE-2019-5931
+	RESERVED
+CVE-2019-5930
+	RESERVED
+CVE-2019-5929
+	RESERVED
+CVE-2019-5928
+	RESERVED
+CVE-2019-5927
+	RESERVED
+CVE-2019-5926
+	RESERVED
+CVE-2019-5925
+	RESERVED
+CVE-2019-5924
+	RESERVED
+CVE-2019-5923
+	RESERVED
+CVE-2019-5922
+	RESERVED
+CVE-2019-5921
+	RESERVED
+CVE-2019-5920
+	RESERVED
+CVE-2019-5919
+	RESERVED
+CVE-2019-5918
+	RESERVED
+CVE-2019-5917
+	RESERVED
+CVE-2019-5916
+	RESERVED
+CVE-2019-5915
+	RESERVED
+CVE-2019-5914
+	RESERVED
+CVE-2019-5913
+	RESERVED
+CVE-2019-5912
+	RESERVED
+CVE-2019-5911
+	RESERVED
+CVE-2019-5910
+	RESERVED
+CVE-2019-5909
+	RESERVED
+CVE-2019-5908
+	RESERVED
+CVE-2019-5907
+	RESERVED
+CVE-2019-5906
+	RESERVED
+CVE-2019-5905
+	RESERVED
+CVE-2019-5904
+	RESERVED
+CVE-2019-5903
+	RESERVED
+CVE-2019-5902
+	RESERVED
+CVE-2019-5901
+	RESERVED
+CVE-2019-5900
+	RESERVED
+CVE-2019-5899
+	RESERVED
+CVE-2019-5898
+	RESERVED
+CVE-2019-5897
+	RESERVED
+CVE-2019-5896
+	RESERVED
+CVE-2019-5895
+	RESERVED
+CVE-2019-5894
+	RESERVED
+CVE-2019-5893 (Nelson Open Source ERP v6.3.1 allows SQL Injection via the ...)
+	TODO: check
+CVE-2019-5892 (bgpd in FRRouting FRR (aka Free Range Routing) 2.x and 3.x before ...)
+	TODO: check
+CVE-2019-5891
+	RESERVED
+CVE-2019-5890
+	RESERVED
+CVE-2019-5889
+	RESERVED
+CVE-2019-5888
+	RESERVED
+CVE-2019-5887 (An issue was discovered in ShopXO 1.2.0. In the UnlinkDir method of the ...)
+	TODO: check
+CVE-2019-5886 (An issue was discovered in ShopXO 1.2.0. In the ...)
+	TODO: check
+CVE-2019-5885
+	RESERVED
 CVE-2019-5884 (php/elFinder.class.php in elFinder before 2.1.45 leaks information if ...)
 	TODO: check
 CVE-2019-5883
@@ -11462,6 +11910,7 @@ CVE-2018-19760 (cfg_init in confuse.c in libConfuse 3.2.2 has a memory leak. ...
 CVE-2018-19759 (There is a heap-based buffer over-read at stb_image_write.h (function: ...)
 	TODO: check
 CVE-2018-19758 (There is a heap-based buffer over-read at wav.c in wav_write_header in ...)
+	{DLA-1632-1}
 	- libsndfile <unfixed> (bug #917416)
 	[stretch] - libsndfile <no-dsa> (Minor issue)
 	NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=1643812
@@ -21998,8 +22447,8 @@ CVE-2018-16805 (In b3log Solo 2.9.3, XSS in the Input page under the Publish Art
 	NOT-FOR-US: b3log
 CVE-2018-16804
 	RESERVED
-CVE-2018-16803
-	RESERVED
+CVE-2018-16803 (In CIMTechniques CIMScan 6.x through 6.2, the SOAP WSDL parser allows ...)
+	TODO: check
 CVE-2018-16801
 	RESERVED
 CVE-2018-16800
@@ -25452,18 +25901,18 @@ CVE-2018-15460
 	RESERVED
 CVE-2018-15459
 	RESERVED
-CVE-2018-15458
-	RESERVED
-CVE-2018-15457
-	RESERVED
-CVE-2018-15456
-	RESERVED
+CVE-2018-15458 (A vulnerability in the Shell Access Filter feature of Cisco Firepower ...)
+	TODO: check
+CVE-2018-15457 (A vulnerability in the web-based management interface of Cisco Prime ...)
+	TODO: check
+CVE-2018-15456 (A vulnerability in the Admin Portal of Cisco Identity Services Engine ...)
+	TODO: check
 CVE-2018-15455
 	RESERVED
 CVE-2018-15454 (A vulnerability in the Session Initiation Protocol (SIP) inspection ...)
 	NOT-FOR-US: Cisco
-CVE-2018-15453
-	RESERVED
+CVE-2018-15453 (A vulnerability in the Secure/Multipurpose Internet Mail Extensions ...)
+	TODO: check
 CVE-2018-15452 (A vulnerability in the DLL loading component of Cisco Advanced Malware ...)
 	NOT-FOR-US: Cisco
 CVE-2018-15451 (A vulnerability in the web-based management interface of Cisco Prime ...)
@@ -56717,38 +57166,38 @@ CVE-2018-4049
 	RESERVED
 CVE-2018-4048
 	RESERVED
-CVE-2018-4047
-	RESERVED
-CVE-2018-4046
-	RESERVED
-CVE-2018-4045
-	RESERVED
-CVE-2018-4044
-	RESERVED
-CVE-2018-4043
-	RESERVED
-CVE-2018-4042
-	RESERVED
-CVE-2018-4041
-	RESERVED
+CVE-2018-4047 (An exploitable privilege escalation vulnerability exists in the helper ...)
+	TODO: check
+CVE-2018-4046 (An exploitable denial-of-service vulnerability exists in the helper ...)
+	TODO: check
+CVE-2018-4045 (An exploitable privilege escalation vulnerability exists in the helper ...)
+	TODO: check
+CVE-2018-4044 (An exploitable privilege escalation vulnerability exists in the helper ...)
+	TODO: check
+CVE-2018-4043 (An exploitable privilege escalation vulnerability exists in the Clean ...)
+	TODO: check
+CVE-2018-4042 (An exploitable privilege escalation vulnerability exists in the helper ...)
+	TODO: check
+CVE-2018-4041 (An exploitable privilege escalation vulnerability exists in the helper ...)
+	TODO: check
 CVE-2018-4040 (An exploitable uninitialized pointer vulnerability exists in the rich ...)
 	NOT-FOR-US: Atlantis Word Processor
 CVE-2018-4039 (An exploitable out-of-bounds write vulnerability exists in the PNG ...)
 	NOT-FOR-US: Atlantis Word Processor
 CVE-2018-4038 (An exploitable arbitrary write vulnerability exists in the open ...)
 	NOT-FOR-US: Atlantis Word Processor
-CVE-2018-4037
-	RESERVED
-CVE-2018-4036
-	RESERVED
-CVE-2018-4035
-	RESERVED
-CVE-2018-4034
-	RESERVED
-CVE-2018-4033
-	RESERVED
-CVE-2018-4032
-	RESERVED
+CVE-2018-4037 (The CleanMyMac X software contains an exploitable privilege escalation ...)
+	TODO: check
+CVE-2018-4036 (The CleanMyMac X software contains an exploitable privilege escalation ...)
+	TODO: check
+CVE-2018-4035 (The CleanMyMac X software contains an exploitable privilege escalation ...)
+	TODO: check
+CVE-2018-4034 (The CleanMyMac X software contains an exploitable privilege escalation ...)
+	TODO: check
+CVE-2018-4033 (The CleanMyMac X software contains an exploitable privilege escalation ...)
+	TODO: check
+CVE-2018-4032 (An exploitable privilege escalation vulnerability exists in the way ...)
+	TODO: check
 CVE-2018-4031
 	RESERVED
 CVE-2018-4030
@@ -68164,12 +68613,12 @@ CVE-2017-1000159 (Command injection in evince via filename when printing to PDF.
 	NOTE: Fixed by: https://git.gnome.org/browse/evince/commit/?id=350404c76dc8601e2cdd2636490e2afc83d3090e (3.25.91)
 CVE-2018-0485 (A vulnerability in the SM-1T3/E3 firmware on Cisco Second Generation ...)
 	NOT-FOR-US: Cisco
-CVE-2018-0484
-	RESERVED
-CVE-2018-0483
-	RESERVED
-CVE-2018-0482
-	RESERVED
+CVE-2018-0484 (A vulnerability in the access control logic of the Secure Shell (SSH) ...)
+	TODO: check
+CVE-2018-0483 (A vulnerability in Cisco Jabber Client Framework (JCF) could allow an ...)
+	TODO: check
+CVE-2018-0482 (A vulnerability in the web-based management interface of Cisco Prime ...)
+	TODO: check
 CVE-2018-0481 (A vulnerability in the CLI parser of Cisco IOS XE Software could allow ...)
 	NOT-FOR-US: Cisco
 CVE-2018-0480 (A vulnerability in the errdisable per VLAN feature of Cisco IOS XE ...)
@@ -68184,8 +68633,8 @@ CVE-2018-0476 (A vulnerability in the Network Address Translation (NAT) Session
 	NOT-FOR-US: Cisco
 CVE-2018-0475 (A vulnerability in the implementation of the cluster feature of Cisco ...)
 	NOT-FOR-US: Cisco
-CVE-2018-0474
-	RESERVED
+CVE-2018-0474 (A vulnerability in the web-based management interface of Cisco Unified ...)
+	TODO: check
 CVE-2018-0473 (A vulnerability in the Precision Time Protocol (PTP) subsystem of ...)
 	NOT-FOR-US: Cisco
 CVE-2018-0472 (A vulnerability in the IPsec driver code of multiple Cisco IOS XE ...)
@@ -68210,8 +68659,8 @@ CVE-2018-0463 (A vulnerability in the Cisco Network Plug and Play server compone
 	NOT-FOR-US: Cisco
 CVE-2018-0462 (A vulnerability in the user management functionality of Cisco ...)
 	NOT-FOR-US: Cisco
-CVE-2018-0461
-	RESERVED
+CVE-2018-0461 (A vulnerability in the Cisco IP Phone 8800 Series Software could allow ...)
+	TODO: check
 CVE-2018-0460 (A vulnerability in the REST API of Cisco Enterprise NFV Infrastructure ...)
 	NOT-FOR-US: Cisco
 CVE-2018-0459 (A vulnerability in the web-based management interface of Cisco ...)
@@ -68234,8 +68683,8 @@ CVE-2018-0451 (A vulnerability in the web-based management interface of Cisco ..
 	NOT-FOR-US: Cisco
 CVE-2018-0450 (A vulnerability in the web-based management interface of Cisco Data ...)
 	NOT-FOR-US: Cisco
-CVE-2018-0449
-	RESERVED
+CVE-2018-0449 (A vulnerability in the Cisco Jabber Client Framework (JCF) software, ...)
+	TODO: check
 CVE-2018-0448 (A vulnerability in the identity management service of Cisco Digital ...)
 	NOT-FOR-US: Cisco
 CVE-2018-0447 (A vulnerability in the anti-spam protection mechanisms of Cisco ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/cf449e4b8e1be4f086b3e39027e0bd7b18502564

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/cf449e4b8e1be4f086b3e39027e0bd7b18502564
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20190110/6ff25128/attachment-0001.html>


More information about the debian-security-tracker-commits mailing list