[Git][security-tracker-team/security-tracker][master] Situation around CVE-2017-573{1..5} was clarified with the involved CNAs

Salvatore Bonaccorso carnil at debian.org
Fri Nov 15 20:16:34 GMT 2019



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
79bdece9 by Salvatore Bonaccorso at 2019-11-15T20:15:13Z
Situation around CVE-2017-573{1..5} was clarified with the involved CNAs

CVE-2017-5731 remains valid and got resumited with details, the other
remain REJECTED. Reflect now the correct state by removing the notes
from the rejected ones as confirmed with Intel CNA and MITRE.

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -147007,24 +147007,12 @@ CVE-2017-5736 (An elevation of privilege in Intel Software Guard Extensions Plat
 	NOT-FOR-US: Intel
 CVE-2017-5735
 	REJECTED
-	NOTE: https://bugzilla.tianocore.org/show_bug.cgi?id=686
-	NOTE: https://bugzilla.tianocore.org/attachment.cgi?id=150
-	NOTE: https://edk2-docs.gitbooks.io/security-advisory/content/edk-ii-tianocompress-bounds-checking-issues.html
 CVE-2017-5734
 	REJECTED
-	NOTE: https://bugzilla.tianocore.org/show_bug.cgi?id=686
-	NOTE: https://bugzilla.tianocore.org/attachment.cgi?id=150
-	NOTE: https://edk2-docs.gitbooks.io/security-advisory/content/edk-ii-tianocompress-bounds-checking-issues.html
 CVE-2017-5733
 	REJECTED
-	NOTE: https://bugzilla.tianocore.org/show_bug.cgi?id=686
-	NOTE: https://bugzilla.tianocore.org/attachment.cgi?id=150
-	NOTE: https://edk2-docs.gitbooks.io/security-advisory/content/edk-ii-tianocompress-bounds-checking-issues.html
 CVE-2017-5732
 	REJECTED
-	NOTE: https://bugzilla.tianocore.org/show_bug.cgi?id=686
-	NOTE: https://bugzilla.tianocore.org/attachment.cgi?id=150
-	NOTE: https://edk2-docs.gitbooks.io/security-advisory/content/edk-ii-tianocompress-bounds-checking-issues.html
 CVE-2017-5731 (Bounds checking in Tianocompress before November 7, 2017 may allow an  ...)
 	NOTE: https://bugzilla.tianocore.org/show_bug.cgi?id=686
 	NOTE: https://bugzilla.tianocore.org/attachment.cgi?id=150



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/79bdece91a2f6190045fd34e31a6e9ff7034b6e4

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/79bdece91a2f6190045fd34e31a6e9ff7034b6e4
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20191115/fda3f973/attachment-0001.html>


More information about the debian-security-tracker-commits mailing list