summaryrefslogtreecommitdiffstats
path: root/data/CVE
diff options
context:
space:
mode:
authorMoritz Muehlenhoff <jmm@debian.org>2020-12-27 19:12:02 +0100
committerMoritz Muehlenhoff <jmm@debian.org>2020-12-27 19:12:02 +0100
commit148a94192ae6b847cd7f6a7ecf30d5d19a98a065 (patch)
tree406baa9a988ea6130d84eb946d7da3766fee7eb1 /data/CVE
parent5a73fa582f26a5939853f2f8cf1066ee9f7f1b94 (diff)
bullseye triage
Diffstat (limited to 'data/CVE')
-rw-r--r--data/CVE/2016.list5
-rw-r--r--data/CVE/2017.list1
-rw-r--r--data/CVE/2018.list1
-rw-r--r--data/CVE/2019.list1
4 files changed, 7 insertions, 1 deletions
diff --git a/data/CVE/2016.list b/data/CVE/2016.list
index ae6d1703b0..38158d87ff 100644
--- a/data/CVE/2016.list
+++ b/data/CVE/2016.list
@@ -16971,10 +16971,12 @@ CVE-2016-5417 (Memory leak in the __res_vinit function in the IPv6 name server m
NOTE: https://sourceware.org/bugzilla/show_bug.cgi?id=19257
CVE-2016-5416 (389 Directory Server in Red Hat Enterprise Linux Desktop 6 through 7, ...)
- 389-ds-base <unfixed> (bug #834233)
- [buster] - 389-ds-base <no-dsa> (Minor issue)
+ [bullseye] - 389-ds-base <ignored> (Minor issue)
+ [buster] - 389-ds-base <ignored> (Minor issue)
[stretch] - 389-ds-base <no-dsa> (Minor issue)
[jessie] - 389-ds-base <no-dsa> (Minor issue)
NOTE: https://fedorahosted.org/389/ticket/48852
+ NOTE: https://github.com/389ds/389-ds-base/issues/1912
NOTE: Potentially related: https://fedorahosted.org/389/ticket/48354
CVE-2016-5415
RESERVED
@@ -17652,6 +17654,7 @@ CVE-2016-4456 (The "GNUTLS_KEYLOGFILE" environment variable in gnutls 3.4.12 all
NOTE: https://www.openwall.com/lists/oss-security/2016/06/07/2
CVE-2016-1000002 (gdm3 3.14.2 and possibly later has an information leak before screen l ...)
- gdm3 <unfixed> (low; bug #849432)
+ [bullseye] - gdm3 <ignored> (Minor issue)
[buster] - gdm3 <ignored> (Minor issue)
[stretch] - gdm3 <ignored> (Minor issue)
[jessie] - gdm3 <ignored> (Minor issue)
diff --git a/data/CVE/2017.list b/data/CVE/2017.list
index 3c40b3a068..4a8c509a1d 100644
--- a/data/CVE/2017.list
+++ b/data/CVE/2017.list
@@ -33251,6 +33251,7 @@ CVE-2017-7476 (Gnulib before 2017-04-26 has a heap-based buffer overflow with th
NOTE: Introduced with 4bc76593 and 4e6e16b3f.
CVE-2017-7475 (Cairo version 1.15.4 is vulnerable to a NULL pointer dereference relat ...)
- cairo <unfixed> (low; bug #870264)
+ [bullseye] - cairo <ignored> (Minor issue)
[buster] - cairo <ignored> (Minor issue)
[stretch] - cairo <no-dsa> (Minor issue)
[jessie] - cairo <no-dsa> (Minor issue)
diff --git a/data/CVE/2018.list b/data/CVE/2018.list
index 28a7d77259..bb1a2de918 100644
--- a/data/CVE/2018.list
+++ b/data/CVE/2018.list
@@ -26004,6 +26004,7 @@ CVE-2018-11490 (The DGifDecompressLine function in dgif_lib.c in GIFLIB (possibl
NOTE: Issue was reported against sam2p but issue is in dgif_lib.c from giflib.
CVE-2018-11489 (The DGifDecompressLine function in dgif_lib.c in GIFLIB (possibly vers ...)
- giflib <unfixed> (bug #904113)
+ [bullseye] - giflib <no-dsa> (Minor issue)
[buster] - giflib <no-dsa> (Minor issue)
[stretch] - giflib <no-dsa> (Minor issue)
[jessie] - giflib <no-dsa> (Minor issue)
diff --git a/data/CVE/2019.list b/data/CVE/2019.list
index 2cc6d73022..b4d9ec6a3c 100644
--- a/data/CVE/2019.list
+++ b/data/CVE/2019.list
@@ -26847,6 +26847,7 @@ CVE-2019-10736
RESERVED
CVE-2019-10735 (In Claws Mail 3.14.1, an attacker in possession of S/MIME or PGP encry ...)
- claws-mail <unfixed> (low; bug #926705)
+ [bullseye] - claws-mail <no-dsa> (Minor issue)
[buster] - claws-mail <postponed> (Revisit when fixed upstream)
[stretch] - claws-mail <postponed> (Revisit when fixed upstream)
[jessie] - claws-mail <postponed> (Revisit when fixed upstream)

© 2014-2024 Faster IT GmbH | imprint | privacy policy