[Git][security-tracker-team/security-tracker][master] Remove for now severity assessment for nfdump

Salvatore Bonaccorso carnil at debian.org
Wed Jul 17 11:31:17 BST 2019



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
2b07ddba by Salvatore Bonaccorso at 2019-07-17T10:30:24Z
Remove for now severity assessment for nfdump

Might actually not be correct and can have an impact. Needs
proper re-evaluation and so long better to have it marked with higher
severity.

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -11171,10 +11171,9 @@ CVE-2019-1010059
 CVE-2019-1010058
 	RESERVED
 CVE-2019-1010057 (nfdump 1.6.16 and earlier is affected by: Buffer Overflow. The impact  ...)
-	- nfdump 1.6.17-1 (unimportant)
+	- nfdump 1.6.17-1
 	NOTE: https://github.com/phaag/nfdump/issues/104
 	NOTE: https://github.com/phaag/nfdump/commit/9f0fe9563366f62a71d34c92229da3432ec5cf0e
-	NOTE: Negligible security impact
 CVE-2019-1010056
 	RESERVED
 CVE-2019-1010055



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/2b07ddbaf5daf9e77c6d854bf3cb0e8d626a12a4

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/2b07ddbaf5daf9e77c6d854bf3cb0e8d626a12a4
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20190717/1a27ebb6/attachment.html>


More information about the debian-security-tracker-commits mailing list