Author: sectracker Date: 2017-11-02 09:10:13 +0000 (Thu, 02 Nov 2017) New Revision: 57233
Modified: data/CVE/list Log: automatic update Modified: data/CVE/list =================================================================== --- data/CVE/list 2017-11-02 08:15:40 UTC (rev 57232) +++ data/CVE/list 2017-11-02 09:10:13 UTC (rev 57233) @@ -7776,11 +7776,11 @@ NOT-FOR-US: FineCMS CVE-2017-13696 RESERVED -CVE-2017-1000122 +CVE-2017-1000122 (The UNIX IPC layer in WebKit, including WebKitGTK+ prior to 2.16.3, ...) - webkit2gtk 2.16.3-2 (unimportant) NOTE: https://webkitgtk.org/security/WSA-2017-0007.html NOTE: Not covered by security support -CVE-2017-1000121 +CVE-2017-1000121 (The UNIX IPC layer in WebKit, including WebKitGTK+ prior to 2.16.3, ...) - webkit2gtk 2.16.3-2 (unimportant) NOTE: https://webkitgtk.org/security/WSA-2017-0007.html NOTE: Not covered by security support @@ -24777,7 +24777,7 @@ NOTE: https://www.mozilla.org/en-US/security/advisories/mfsa2017-23/#CVE-2017-7825 CVE-2017-7824 RESERVED - {DSA-3987-1 DLA-1153-1 DLA-1118-1} + {DSA-4014-1 DSA-3987-1 DLA-1153-1 DLA-1118-1} - firefox 56.0-1 - firefox-esr 52.4.0esr-2 - thunderbird 1:52.4.0-1 @@ -24786,7 +24786,7 @@ NOTE: https://www.mozilla.org/en-US/security/advisories/mfsa2017-23/#CVE-2017-7824 CVE-2017-7823 RESERVED - {DSA-3987-1 DLA-1153-1 DLA-1118-1} + {DSA-4014-1 DSA-3987-1 DLA-1153-1 DLA-1118-1} - firefox 56.0-1 - firefox-esr 52.4.0esr-2 - thunderbird 1:52.4.0-1 @@ -24807,7 +24807,7 @@ NOTE: https://www.mozilla.org/en-US/security/advisories/mfsa2017-21/#CVE-2017-7820 CVE-2017-7819 RESERVED - {DSA-3987-1 DLA-1153-1 DLA-1118-1} + {DSA-4014-1 DSA-3987-1 DLA-1153-1 DLA-1118-1} - firefox 56.0-1 - firefox-esr 52.4.0esr-2 - thunderbird 1:52.4.0-1 @@ -24816,7 +24816,7 @@ NOTE: https://www.mozilla.org/en-US/security/advisories/mfsa2017-23/#CVE-2017-7819 CVE-2017-7818 RESERVED - {DSA-3987-1 DLA-1153-1 DLA-1118-1} + {DSA-4014-1 DSA-3987-1 DLA-1153-1 DLA-1118-1} - firefox 56.0-1 - firefox-esr 52.4.0esr-2 - thunderbird 1:52.4.0-1 @@ -24837,7 +24837,7 @@ NOTE: https://www.mozilla.org/en-US/security/advisories/mfsa2017-21/#CVE-2017-7815 CVE-2017-7814 RESERVED - {DSA-3987-1 DLA-1153-1 DLA-1118-1} + {DSA-4014-1 DSA-3987-1 DLA-1153-1 DLA-1118-1} - firefox 56.0-1 - firefox-esr 52.4.0esr-2 - thunderbird 1:52.4.0-1 @@ -24858,7 +24858,7 @@ NOTE: https://www.mozilla.org/en-US/security/advisories/mfsa2017-21/#CVE-2017-7811 CVE-2017-7810 RESERVED - {DSA-3987-1 DLA-1153-1 DLA-1118-1} + {DSA-4014-1 DSA-3987-1 DLA-1153-1 DLA-1118-1} - firefox 56.0-1 - firefox-esr 52.4.0esr-2 - thunderbird 1:52.4.0-1 @@ -24885,7 +24885,7 @@ - firefox 55.0-1 CVE-2017-7805 RESERVED - {DSA-3998-1 DSA-3987-1 DLA-1153-1 DLA-1138-1 DLA-1118-1} + {DSA-4014-1 DSA-3998-1 DSA-3987-1 DLA-1153-1 DLA-1138-1 DLA-1118-1} - firefox 56.0-1 - firefox-esr 52.4.0esr-2 - thunderbird 1:52.4.0-1 @@ -24945,7 +24945,7 @@ - firefox 55.0-1 CVE-2017-7793 RESERVED - {DSA-3987-1 DLA-1153-1 DLA-1118-1} + {DSA-4014-1 DSA-3987-1 DLA-1153-1 DLA-1118-1} - firefox 56.0-1 - firefox-esr 52.4.0esr-2 - thunderbird 1:52.4.0-1 @@ -43490,12 +43490,12 @@ NOT-FOR-US: IBM CVE-2017-1555 (IBM API Connect 5.0.0.0 through 5.0.7.2 could allow an authenticated ...) NOT-FOR-US: IBM -CVE-2017-1554 - RESERVED -CVE-2017-1553 - RESERVED -CVE-2017-1552 - RESERVED +CVE-2017-1554 (IBM Infosphere BigInsights 4.2.0 and 4.2.5 could allow a remote ...) + TODO: check +CVE-2017-1553 (IBM Infosphere BigInsights 4.2.0 and 4.2.5 is vulnerable to cross-site ...) + TODO: check +CVE-2017-1552 (IBM Infosphere BigInsights 4.2.0 and 4.2.5 is vulnerable to link ...) + TODO: check CVE-2017-1551 (IBM API Connect 5.0.0.0 through 5.0.7.2 could allow a remote attacker ...) NOT-FOR-US: IBM CVE-2017-1550 @@ -43918,8 +43918,8 @@ RESERVED CVE-2017-1341 RESERVED -CVE-2017-1340 - RESERVED +CVE-2017-1340 (IBM Jazz Reporting Service (JRS) 6.0.4 could allow an authenticated ...) + TODO: check CVE-2017-1339 (IBM Spectrum Protect 7.1 and 8.1 (formerly Tivoli Storage Manager) ...) NOT-FOR-US: IBM CVE-2017-1338 (IBM DOORS Next Generation (DNG/RRC) 4.0, 5.0, and 6.0 is vulnerable to ...) @@ -43932,8 +43932,8 @@ NOT-FOR-US: IBM CVE-2017-1334 (IBM RELM 4.0, 5.0, and 6.0 is vulnerable to cross-site scripting. This ...) NOT-FOR-US: IBM -CVE-2017-1333 - RESERVED +CVE-2017-1333 (IBM OpenPages GRC Platform 7.1, 7.2, and 7.3 could allow an ...) + TODO: check CVE-2017-1332 (IBM iNotes 8.5 and 9.0 is vulnerable to cross-site scripting. This ...) NOT-FOR-US: IBM CVE-2017-1331 (IBM Content Navigator 2.0.3 and 3.0.0 is vulnerable to cross-site ...) @@ -43998,8 +43998,8 @@ NOT-FOR-US: IBM CVE-2017-1301 (IBM Spectrum Protect 7.1 and 8.1 could allow a local attacker to ...) NOT-FOR-US: IBM -CVE-2017-1300 - RESERVED +CVE-2017-1300 (IBM OpenPages GRC Platform 7.1, 7.2, and 7.3 is vulnerable to ...) + TODO: check CVE-2017-1299 RESERVED CVE-2017-1298 @@ -44018,8 +44018,8 @@ NOT-FOR-US: IBM CVE-2017-1291 (IBM Maximo Asset Management 7.5 and 7.6 is vulnerable to HTTP response ...) NOT-FOR-US: IBM -CVE-2017-1290 - RESERVED +CVE-2017-1290 (IBM OpenPages GRC Platform 7.1, 7.2, and 7.3 is vulnerable to ...) + TODO: check CVE-2017-1289 (IBM SDK, Java Technology Edition is vulnerable XML External Entity ...) NOT-FOR-US: IBM JDK CVE-2017-1288 @@ -44302,10 +44302,10 @@ NOT-FOR-US: IBM CVE-2017-1149 (IBM UrbanCode Deploy (UCD) 6.0, 6.1, and 6.2 is vulnerable to a denial ...) NOT-FOR-US: IBM -CVE-2017-1148 - RESERVED -CVE-2017-1147 - RESERVED +CVE-2017-1148 (IBM OpenPages GRC Platform 7.2 and 7.3 with OpenPages Loss Event Entry ...) + TODO: check +CVE-2017-1147 (IBM OpenPages GRC Platform 7.1, 7.2, and 7.3 is vulnerable to ...) + TODO: check CVE-2017-1146 (IBM Content Navigator 2.0.3 and 3.0.0 are vulnerable to cross-site ...) NOT-FOR-US: IBM CVE-2017-1145 (IBM WebSphere MQ 8.0.0.6 does not properly terminate channel agents ...) @@ -68182,8 +68182,8 @@ RESERVED CVE-2016-3049 (IBM OpenPages GRC Platform 7.1, 7.2, and 7.3 is vulnerable to HTML ...) NOT-FOR-US: IBM -CVE-2016-3048 - RESERVED +CVE-2016-3048 (IBM OpenPages GRC Platform 7.1, 7.2, and 7.3 is vulnerable to ...) + TODO: check CVE-2016-3047 (Open redirect vulnerability in IBM FileNet Workplace 4.0.2 through ...) NOT-FOR-US: IBM CVE-2016-3046 (IBM Security Access Manager for Web is vulnerable to SQL injection. A ...) _______________________________________________ Secure-testing-commits mailing list Secure-testing-commits@lists.alioth.debian.org http://lists.alioth.debian.org/cgi-bin/mailman/listinfo/secure-testing-commits