Author: jmm
Date: 2017-02-20 21:35:35 +0000 (Mon, 20 Feb 2017)
New Revision: 49085

Modified:
   data/CVE/list
   data/DSA/list
Log:
another chromium issue fixed
qemu n/a in stable/oldstable


Modified: data/CVE/list
===================================================================
--- data/CVE/list       2017-02-20 21:32:21 UTC (rev 49084)
+++ data/CVE/list       2017-02-20 21:35:35 UTC (rev 49085)
@@ -99,10 +99,10 @@
 CVE-2017-6058 [net: vmxnet3: OOB NetRxPkt::ehdr_buf access when doing vlan 
stripping]
        RESERVED
        - qemu <unfixed> (bug #855616)
-       - qemu-kvm <removed>
+       [jessie] - qemu <not-affected> (Vulnerable code not present)
+       - qemu-kvm <not-affected> (Vulnerable code not present)
        NOTE: 
https://lists.nongnu.org/archive/html/qemu-devel/2017-02/msg03527.html
        NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=1423358
-       TODO: check affected versions
 CVE-2017-6057
        RESERVED
 CVE-2017-6055 (XML external entity (XXE) vulnerability in eParakstitajs 3 
before 1.3.9 ...)
@@ -266,7 +266,7 @@
        NOTE: https://bugs.ghostscript.com/show_bug.cgi?id=697500
        NOTE: 
http://git.ghostscript.com/?p=mupdf.git;h=1912de5f08e90af1d9d0a9791f58ba3afdb9d465
 CVE-2017-5990 (An issue was discovered in PhreeBooksERP before 2017-02-13. The 
...)
-       TODO: check
+       NOT-FOR-US: PhreeBooksERP
 CVE-2017-5989
        RESERVED
 CVE-2017-5988
@@ -3394,7 +3394,9 @@
 CVE-2017-5028
        RESERVED
 CVE-2017-5027 (Blink in Google Chrome prior to 56.0.2924.76 for Linux, Windows 
and ...)
-       TODO: check
+       {DSA-3776-1}
+       - chromium-browser 56.0.2924.76-3
+       [wheezy] - chromium-browser <end-of-life> (Not supported in Wheezy)
 CVE-2017-5026 (Google Chrome prior to 56.0.2924.76 for Linux, Windows and Mac, 
failed ...)
        {DSA-3776-1}
        - chromium-browser 56.0.2924.76-3

Modified: data/DSA/list
===================================================================
--- data/DSA/list       2017-02-20 21:32:21 UTC (rev 49084)
+++ data/DSA/list       2017-02-20 21:35:35 UTC (rev 49085)
@@ -41,7 +41,7 @@
        {CVE-2016-6906 CVE-2016-6912 CVE-2016-9317 CVE-2016-10166 
CVE-2016-10167 CVE-2016-10168}
        [jessie] - libgd2 2.1.0-5+deb8u9
 [31 Jan 2017] DSA-3776-1 chromium-browser - security update
-       {CVE-2017-5006 CVE-2017-5007 CVE-2017-5008 CVE-2017-5009 CVE-2017-5010 
CVE-2017-5011 CVE-2017-5012 CVE-2017-5013 CVE-2017-5014 CVE-2017-5015 
CVE-2017-5016 CVE-2017-5017 CVE-2017-5018 CVE-2017-5019 CVE-2017-5020 
CVE-2017-5021 CVE-2017-5022 CVE-2017-5023 CVE-2017-5024 CVE-2017-5025 
CVE-2017-5026}
+       {CVE-2017-5006 CVE-2017-5007 CVE-2017-5008 CVE-2017-5009 CVE-2017-5010 
CVE-2017-5011 CVE-2017-5012 CVE-2017-5013 CVE-2017-5014 CVE-2017-5015 
CVE-2017-5016 CVE-2017-5017 CVE-2017-5018 CVE-2017-5019 CVE-2017-5020 
CVE-2017-5021 CVE-2017-5022 CVE-2017-5023 CVE-2017-5024 CVE-2017-5025 
CVE-2017-5026 CVE-2017-5027}
        [jessie] - chromium-browser 56.0.2924.76-1~deb8u1
 [29 Jan 2017] DSA-3775-1 tcpdump - security update
        {CVE-2016-7922 CVE-2016-7923 CVE-2016-7924 CVE-2016-7925 CVE-2016-7926 
CVE-2016-7927 CVE-2016-7928 CVE-2016-7929 CVE-2016-7930 CVE-2016-7931 
CVE-2016-7932 CVE-2016-7933 CVE-2016-7934 CVE-2016-7935 CVE-2016-7936 
CVE-2016-7937 CVE-2016-7938 CVE-2016-7939 CVE-2016-7940 CVE-2016-7973 
CVE-2016-7974 CVE-2016-7975 CVE-2016-7983 CVE-2016-7984 CVE-2016-7985 
CVE-2016-7986 CVE-2016-7992 CVE-2016-7993 CVE-2016-8574 CVE-2016-8575 
CVE-2017-5202 CVE-2017-5203 CVE-2017-5204 CVE-2017-5205 CVE-2017-5341 
CVE-2017-5342 CVE-2017-5482 CVE-2017-5483 CVE-2017-5484 CVE-2017-5485 
CVE-2017-5486}


_______________________________________________
Secure-testing-commits mailing list
Secure-testing-commits@lists.alioth.debian.org
http://lists.alioth.debian.org/cgi-bin/mailman/listinfo/secure-testing-commits

Reply via email to