Author: carnil Date: 2017-11-17 05:17:38 +0000 (Fri, 17 Nov 2017) New Revision: 57695
Modified: data/CVE/list Log: linux 4.13.13-1 released to unstable Modified: data/CVE/list =================================================================== --- data/CVE/list 2017-11-16 21:30:15 UTC (rev 57694) +++ data/CVE/list 2017-11-17 05:17:38 UTC (rev 57695) @@ -686,18 +686,18 @@ NOTE: release-1.2: https://github.com/roundcube/roundcubemail/commit/9be2224c779d7abc7b29eea2b83a8a3671c543e0 NOTE: https://github.com/roundcube/roundcubemail/issues/6026 CVE-2017-16650 (The qmi_wwan_bind function in drivers/net/usb/qmi_wwan.c in the Linux ...) - - linux <unfixed> + - linux 4.13.13-1 [wheezy] - linux <not-affected> (Vulnerable code not present) CVE-2017-16649 (The usbnet_generic_cdc_bind function in drivers/net/usb/cdc_ether.c in ...) - - linux <unfixed> + - linux 4.13.13-1 CVE-2017-16648 (The dvb_frontend_free function in drivers/media/dvb-core/dvb_frontend.c ...) - linux <not-affected> (Vulnerable code not present) CVE-2017-16647 (drivers/net/usb/asix_devices.c in the Linux kernel through 4.13.11 ...) - - linux <unfixed> + - linux 4.13.13-1 [jessie] - linux <not-affected> (Vulnerable code not present) [wheezy] - linux <not-affected> (Vulnerable code not present) CVE-2017-16646 (drivers/media/usb/dvb-usb/dib0700_devices.c in the Linux kernel through ...) - - linux <unfixed> + - linux 4.13.13-1 [jessie] - linux <not-affected> (Vulnerable code not present) [wheezy] - linux <not-affected> (Vulnerable code not present) CVE-2017-16645 (The ims_pcu_get_cdc_union_desc function in drivers/input/misc/ims-pcu.c ...) @@ -708,7 +708,7 @@ [jessie] - linux <not-affected> (Vulnerable code not present) [wheezy] - linux <not-affected> (Vulnerable code not present) CVE-2017-16643 (The parse_hid_report_descriptor function in drivers/input/tablet/gtco.c ...) - - linux <unfixed> + - linux 4.13.13-1 CVE-2017-16642 (In PHP before 5.6.32, 7.x before 7.0.25, and 7.1.x before 7.1.11, an ...) - php7.1 7.1.11-1 - php7.0 7.0.25-1 @@ -969,9 +969,9 @@ - linux <unfixed> [wheezy] - linux <not-affected> (Vulnerable code not present) CVE-2017-16537 (The imon_probe function in drivers/media/rc/imon.c in the Linux kernel ...) - - linux <unfixed> + - linux 4.13.13-1 CVE-2017-16536 (The cx231xx_usb_probe function in ...) - - linux <unfixed> + - linux 4.13.13-1 CVE-2017-16535 (The usb_get_bos_descriptor function in drivers/usb/core/config.c in the ...) - linux 4.13.10-1 NOTE: Fixed by: https://git.kernel.org/linus/1c0edc3633b56000e18d82fc241e3995ca18a69e @@ -984,7 +984,7 @@ - linux 4.13.10-1 NOTE: Fixed by: https://git.kernel.org/linus/f043bfc98c193c284e2cd768fefabe18ac2fed9b CVE-2017-16532 (The get_endpoints function in drivers/usb/misc/usbtest.c in the Linux ...) - - linux <unfixed> + - linux 4.13.13-1 NOTE: Fixed by: https://git.kernel.org/linus/7c80f9e4a588f1925b07134bb2e3689335f6c6d8 CVE-2017-16531 (drivers/usb/core/config.c in the Linux kernel before 4.13.6 allows ...) - linux 4.13.10-1 @@ -4225,7 +4225,7 @@ CVE-2017-15307 RESERVED CVE-2017-15306 (The kvm_vm_ioctl_check_extension function in arch/powerpc/kvm/powerpc.c ...) - - linux <unfixed> + - linux 4.13.13-1 [jessie] - linux <not-affected> (Vulnerable code introduced later) [wheezy] - linux <not-affected> (Vulnerable code introduced later) NOTE: Fixed by: https://git.kernel.org/linus/ac64115a66c18c01745bbd3c47a36b124e5fd8c0 (4.14-rc7) @@ -4761,7 +4761,7 @@ CVE-2017-15116 RESERVED CVE-2017-15115 (The sctp_do_peeloff function in net/sctp/socket.c in the Linux kernel ...) - - linux <unfixed> + - linux 4.13.13-1 NOTE: https://git.kernel.org/linus/df80cd9b28b9ebaa284a41df611dbf3a2d05ca74 (v4.14-rc6) CVE-2017-15114 [Passwordless access for non-libvirt related services when using shared certificate authority] RESERVED @@ -10365,7 +10365,7 @@ CVE-2017-13080 (Wi-Fi Protected Access (WPA and WPA2) allows reinstallation of the ...) {DSA-3999-1 DLA-1150-1} - wpa 2:2.4-1.1 - - linux <unfixed> + - linux 4.13.13-1 NOTE: https://w1.fi/security/2017-1/ NOTE: https://git.kernel.org/linus/fdf7cb4185b60c68e1a75e61691c4afdc15dea0e (v4.14-rc6) CVE-2017-13079 (Wi-Fi Protected Access (WPA and WPA2) that supports IEEE 802.11w ...) @@ -13385,7 +13385,7 @@ RESERVED CVE-2017-12193 RESERVED - - linux <unfixed> + - linux 4.13.13-1 [wheezy] - linux <not-affected> (Vulnerable code introduced in 3.13-rc1) NOTE: Fixed by: https://git.kernel.org/linus/ea6789980fdaa610d7eb63602c746bf6ec70cd2b (4.14-rc7) NOTE: Introduced by: https://git.kernel.org/linus/3cb989501c2688cacbb7dc4b0d353faf838f53a1 (3.13-rc1) _______________________________________________ Secure-testing-commits mailing list Secure-testing-commits@lists.alioth.debian.org http://lists.alioth.debian.org/cgi-bin/mailman/listinfo/secure-testing-commits