[Git][security-tracker-team/security-tracker][master] automatic update

Salvatore Bonaccorso carnil at debian.org
Fri Jun 7 09:10:35 BST 2019



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
36a205dd by security tracker role at 2019-06-07T08:10:24Z
automatic update

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -1,3 +1,5 @@
+CVE-2019-12762 (Xiaomi Mi 5s Plus devices allow attackers to trigger touchscreen anoma ...)
+	TODO: check
 CVE-2019-12761 (A code injection issue was discovered in PyXDG before 0.26 via crafted ...)
 	- pyxdg <unfixed> (bug #930099)
 	[stretch] - pyxdg <no-dsa> (Minor issue)
@@ -560,8 +562,8 @@ CVE-2019-12494 (In Gardener before 0.20.0, incorrect access control in seed clus
 	TODO: check
 CVE-2019-12493 (A stack-based buffer over-read exists in PostScriptFunction::transform ...)
 	TODO: check
-CVE-2019-12492
-	RESERVED
+CVE-2019-12492 (Gallagher Command Centre before 7.80.939, 7.90.x before 7.90.961, and  ...)
+	TODO: check
 CVE-2019-12491
 	RESERVED
 CVE-2019-12490
@@ -2942,8 +2944,8 @@ CVE-2019-11525
 	RESERVED
 CVE-2019-11524
 	RESERVED
-CVE-2019-11523
-	RESERVED
+CVE-2019-11523 (Anviz Global M3 Outdoor RFID Access Control executes any command recei ...)
+	TODO: check
 CVE-2019-11522
 	RESERVED
 CVE-2019-11521
@@ -21432,8 +21434,8 @@ CVE-2019-4259 (A security vulnerability has been identified in IBM Spectrum Scal
 	NOT-FOR-US: IBM
 CVE-2019-4258 (IBM Sterling B2B Integrator 6.0.0.0 and 6.0.0.1 Standard Edition is vu ...)
 	NOT-FOR-US: IBM
-CVE-2019-4257
-	RESERVED
+CVE-2019-4257 (IBM InfoSphere Information Server 11.5 and 11.7 is affected by an info ...)
+	TODO: check
 CVE-2019-4256 (IBM API Connect 5.0.0.0 through 5.0.8.6 uses weaker than expected cryp ...)
 	NOT-FOR-US: IBM
 CVE-2019-4255
@@ -21508,12 +21510,12 @@ CVE-2019-4221
 	RESERVED
 CVE-2019-4220 (IBM InfoSphere Information Server 11.7.1.0 stores a common hard coded  ...)
 	NOT-FOR-US: IBM
-CVE-2019-4219
-	RESERVED
-CVE-2019-4218
-	RESERVED
-CVE-2019-4217
-	RESERVED
+CVE-2019-4219 (IBM Security Information Queue (ISIQ) 1.0.0, 1.0.1, and 1.0.2 generate ...)
+	TODO: check
+CVE-2019-4218 (IBM Security Information Queue (ISIQ) 1.0.0, 1.0.1, and 1.0.2 allows w ...)
+	TODO: check
+CVE-2019-4217 (IBM Security Information Queue (ISIQ) 1.0.0, 1.0.1, and 1.0.2 could al ...)
+	TODO: check
 CVE-2019-4216
 	RESERVED
 CVE-2019-4215
@@ -21622,10 +21624,10 @@ CVE-2019-4164
 	RESERVED
 CVE-2019-4163
 	RESERVED
-CVE-2019-4162
-	RESERVED
-CVE-2019-4161
-	RESERVED
+CVE-2019-4162 (IBM Security Information Queue (ISIQ) 1.0.0, 1.0.1, and 1.0.2 is missi ...)
+	TODO: check
+CVE-2019-4161 (IBM Security Information Queue (ISIQ) 1.0.0, 1.0.1, and 1.0.2 disclose ...)
+	TODO: check
 CVE-2019-4160
 	RESERVED
 CVE-2019-4159
@@ -22632,8 +22634,8 @@ CVE-2019-3792 (Pivotal Concourse version 5.0.0, contains an API that is vulnerab
 	NOT-FOR-US: Pivotal
 CVE-2019-3791
 	REJECTED
-CVE-2019-3790
-	RESERVED
+CVE-2019-3790 (The Pivotal Ops Manager, 2.2.x versions prior to 2.2.23, 2.3.x version ...)
+	TODO: check
 CVE-2019-3789 (Cloud Foundry Routing Release, all versions prior to 0.188.0, contains ...)
 	NOT-FOR-US: Cloud Foundry
 CVE-2019-3788 (Cloud Foundry UAA Release, versions prior to 71.0, allows clients to b ...)
@@ -22766,10 +22768,10 @@ CVE-2019-3725 (RSA Netwitness Platform versions prior to 11.2.1.1 and RSA Securi
 	NOT-FOR-US: RSA Netwitness Platform
 CVE-2019-3724 (RSA Netwitness Platform versions prior to 11.2.1.1 is vulnerable to an ...)
 	NOT-FOR-US: RSA Netwitness Platform
-CVE-2019-3723
-	RESERVED
-CVE-2019-3722
-	RESERVED
+CVE-2019-3723 (Dell EMC OpenManage Server Administrator (OMSA) versions prior to 9.1. ...)
+	TODO: check
+CVE-2019-3722 (Dell EMC OpenManage Server Administrator (OMSA) versions prior to 9.1. ...)
+	TODO: check
 CVE-2019-3721 (Dell EMC Open Manage System Administrator (OMSA) versions prior to 9.3 ...)
 	NOT-FOR-US: Dell
 CVE-2019-3720 (Dell EMC Open Manage System Administrator (OMSA) versions prior to 9.3 ...)
@@ -44163,7 +44165,7 @@ CVE-2018-15589
 CVE-2018-15588 (MailMate before 1.11.3 mishandles a suspicious HTML/MIME structure in  ...)
 	NOT-FOR-US: MailMate
 CVE-2018-15587 (GNOME Evolution through 3.28.2 is prone to OpenPGP signatures being sp ...)
-	{DLA-1766-1}
+	{DSA-4457-1 DLA-1766-1}
 	- evolution 3.30.5-1.1 (bug #924616)
 	NOTE: https://gitlab.gnome.org/GNOME/evolution/issues/120
 	NOTE: https://bugzilla.gnome.org/show_bug.cgi?id=796424



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/36a205ddbce9740272f47fe499c5dc1c320a9bb8

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/36a205ddbce9740272f47fe499c5dc1c320a9bb8
You're receiving this email because of your account on salsa.debian.org.

-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20190607/3cf831e5/attachment.html>


More information about the debian-security-tracker-commits mailing list