Author: jmm
Date: 2017-02-08 22:36:17 +0000 (Wed, 08 Feb 2017)
New Revision: 48783
Modified:
data/CVE/list
Log:
NFUs
Modified: data/CVE/list
===================================================================
--- data/CVE/list 2017-02-08 21:49:37 UTC (rev 48782)
+++ data/CVE/list 2017-02-08 22:36:17 UTC (rev 48783)
@@ -3,11 +3,11 @@
CVE-2017-5934
RESERVED
CVE-2017-5933 (Citrix NetScaler ADC and NetScaler Gateway 10.5 before Build
65.11, ...)
- TODO: check
+ NOT-FOR-US: Citrix
CVE-2016-10213 (A10 AX1030 and possibly other devices with software before
2.7.2-P8 ...)
- TODO: check
+ NOT-FOR-US: A10
CVE-2016-10212 (Radware devices use the same value for the first two GCM
nonces, which ...)
- TODO: check
+ NOT-FOR-US: Radware devices
CVE-2017-5932 [code execution in autocompletion]
RESERVED
- bash 4.4-3
@@ -12159,9 +12159,9 @@
CVE-2017-1129
RESERVED
CVE-2017-1128 (IBM Rational DOORS Next Generation 4.0, 5.0, and 6.0 is
vulnerable to ...)
- TODO: check
+ NOT-FOR-US: IBM
CVE-2017-1127 (IBM Rational DOORS Next Generation 4.0, 5.0 and 6.0 is
vulnerable to ...)
- TODO: check
+ NOT-FOR-US: IBM
CVE-2017-1126
RESERVED
CVE-2017-1125
@@ -12672,7 +12672,7 @@
CVE-2016-9749
RESERVED
CVE-2016-9748 (IBM Rational DOORS Next Generation 5.0 and 6.0 discloses
sensitive ...)
- TODO: check
+ NOT-FOR-US: IBM
CVE-2016-9747
RESERVED
CVE-2016-9746
@@ -13656,59 +13656,59 @@
CVE-2017-0452
RESERVED
CVE-2017-0451 (An information disclosure vulnerability in the Qualcomm sound
driver ...)
- TODO: check
+ NOT-FOR-US: Qualcomm driver for Android
CVE-2017-0450 (An elevation of privilege vulnerability in Audioserver could
enable a ...)
- TODO: check
+ NOT-FOR-US: Android Audioserver
CVE-2017-0449 (An elevation of privilege vulnerability in the Broadcom Wi-Fi
driver ...)
- TODO: check
+ NOT-FOR-US: Broadcom driver for Android
CVE-2017-0448 (An information disclosure vulnerability in the NVIDIA video
driver ...)
- TODO: check
+ NOT-FOR-US: NVIDIA driver for Android
CVE-2017-0447 (An elevation of privilege vulnerability in the HTC touchscreen
driver ...)
- TODO: check
+ NOT-FOR-US: HTC driver for Android
CVE-2017-0446 (An elevation of privilege vulnerability in the HTC touchscreen
driver ...)
- TODO: check
+ NOT-FOR-US: HTC driver for Android
CVE-2017-0445 (An elevation of privilege vulnerability in the HTC touchscreen
driver ...)
- TODO: check
+ NOT-FOR-US: HTC driver for Android
CVE-2017-0444 (An elevation of privilege vulnerability in the Realtek sound
driver ...)
TODO: check
CVE-2017-0443 (An elevation of privilege vulnerability in the Qualcomm Wi-Fi
driver ...)
- TODO: check
+ NOT-FOR-US: Qualcomm driver for Android
CVE-2017-0442 (An elevation of privilege vulnerability in the Qualcomm Wi-Fi
driver ...)
- TODO: check
+ NOT-FOR-US: Qualcomm driver for Android
CVE-2017-0441 (An elevation of privilege vulnerability in the Qualcomm Wi-Fi
driver ...)
- TODO: check
+ NOT-FOR-US: Qualcomm driver for Android
CVE-2017-0440 (An elevation of privilege vulnerability in the Qualcomm Wi-Fi
driver ...)
- TODO: check
+ NOT-FOR-US: Qualcomm driver for Android
CVE-2017-0439 (An elevation of privilege vulnerability in the Qualcomm Wi-Fi
driver ...)
- TODO: check
+ NOT-FOR-US: Qualcomm driver for Android
CVE-2017-0438 (An elevation of privilege vulnerability in the Qualcomm Wi-Fi
driver ...)
- TODO: check
+ NOT-FOR-US: Qualcomm driver for Android
CVE-2017-0437 (An elevation of privilege vulnerability in the Qualcomm Wi-Fi
driver ...)
- TODO: check
+ NOT-FOR-US: Qualcomm driver for Android
CVE-2017-0436 (An elevation of privilege vulnerability in the Qualcomm sound
driver ...)
- TODO: check
+ NOT-FOR-US: Qualcomm driver for Android
CVE-2017-0435 (An elevation of privilege vulnerability in the Qualcomm sound
driver ...)
- TODO: check
+ NOT-FOR-US: Qualcomm driver for Android
CVE-2017-0434 (An elevation of privilege vulnerability in the Synaptics
touchscreen ...)
- TODO: check
+ NOT-FOR-US: Synaptics driver for Android
CVE-2017-0433 (An elevation of privilege vulnerability in the Synaptics
touchscreen ...)
- TODO: check
+ NOT-FOR-US: Synaptics driver for Android
CVE-2017-0432 (An elevation of privilege vulnerability in the MediaTek driver
could ...)
TODO: check
CVE-2017-0431
RESERVED
CVE-2017-0430 (An elevation of privilege vulnerability in the Broadcom Wi-Fi
driver ...)
- TODO: check
+ NOT-FOR-US: Broadcom driver for Android
CVE-2017-0429 (An elevation of privilege vulnerability in the NVIDIA GPU
driver could ...)
- TODO: check
+ NOT-FOR-US: NVIDIA driver for Android
CVE-2017-0428 (An elevation of privilege vulnerability in the NVIDIA GPU
driver could ...)
- TODO: check
+ NOT-FOR-US: NVIDIA driver for Android
CVE-2017-0427 (An elevation of privilege vulnerability in the kernel file
system ...)
TODO: check
CVE-2017-0426 (An information disclosure vulnerability in the Filesystem could
enable ...)
TODO: check
CVE-2017-0425 (An information disclosure vulnerability in Audioserver could
enable a ...)
- TODO: check
+ NOT-FOR-US: Android Audioserver
CVE-2017-0424 (An information disclosure vulnerability in AOSP Messaging could
enable ...)
TODO: check
CVE-2017-0423 (An elevation of privilege vulnerability in Bluetooth could
enable a ...)
@@ -13720,13 +13720,13 @@
CVE-2017-0420 (An information disclosure vulnerability in AOSP Mail could
enable a ...)
TODO: check
CVE-2017-0419 (An elevation of privilege vulnerability in Audioserver could
enable a ...)
- TODO: check
+ NOT-FOR-US: Android Audioserver
CVE-2017-0418 (An elevation of privilege vulnerability in Audioserver could
enable a ...)
- TODO: check
+ NOT-FOR-US: Android Audioserver
CVE-2017-0417 (An elevation of privilege vulnerability in Audioserver could
enable a ...)
- TODO: check
+ NOT-FOR-US: Android Audioserver
CVE-2017-0416 (An elevation of privilege vulnerability in Audioserver could
enable a ...)
- TODO: check
+ NOT-FOR-US: Android Audioserver
CVE-2017-0415 (An elevation of privilege vulnerability in Mediaserver could
enable a ...)
TODO: check
CVE-2017-0414 (An information disclosure vulnerability in AOSP Messaging could
enable ...)
@@ -18100,7 +18100,7 @@
CVE-2016-8493
RESERVED
CVE-2016-8492 (The implementation of an ANSI X9.31 RNG in Fortinet FortiWLC
allows ...)
- TODO: check
+ NOT-FOR-US: Fortinet FortiWLC
CVE-2016-8491 (The presence of a hardcoded account named 'core' in Fortinet
FortiWLC ...)
NOT-FOR-US: Fortinet FortiWLC
CVE-2015-8965
@@ -18222,9 +18222,9 @@
CVE-2016-8482
RESERVED
CVE-2016-8481 (An elevation of privilege vulnerability in the Qualcomm sound
driver ...)
- TODO: check
+ NOT-FOR-US: Qualcomm driver for Android
CVE-2016-8480 (An elevation of privilege vulnerability in the Qualcomm Secure
...)
- TODO: check
+ NOT-FOR-US: Qualcomm driver for Android
CVE-2016-8479
RESERVED
CVE-2016-8478
@@ -18232,7 +18232,7 @@
CVE-2016-8477
RESERVED
CVE-2016-8476 (An elevation of privilege vulnerability in the Qualcomm Wi-Fi
driver ...)
- TODO: check
+ NOT-FOR-US: Qualcomm driver for Android
CVE-2016-8475 (An information disclosure vulnerability in the HTC input driver
could ...)
NOT-FOR-US: HTC driver for Android
CVE-2016-8474 (An information disclosure vulnerability in the
STMicroelectronics ...)
@@ -18342,13 +18342,13 @@
CVE-2016-8422 (An elevation of privilege vulnerability in the Qualcomm
bootloader ...)
NOT-FOR-US: Qualcomm bootloader for Android
CVE-2016-8421 (An elevation of privilege vulnerability in the Qualcomm Wi-Fi
driver ...)
- TODO: check
+ NOT-FOR-US: Qualcomm driver for Android
CVE-2016-8420 (An elevation of privilege vulnerability in the Qualcomm Wi-Fi
driver ...)
- TODO: check
+ NOT-FOR-US: Qualcomm driver for Android
CVE-2016-8419 (An elevation of privilege vulnerability in the Qualcomm Wi-Fi
driver ...)
- TODO: check
+ NOT-FOR-US: Qualcomm driver for Android
CVE-2016-8418 (A remote code execution vulnerability in the Qualcomm crypto
driver ...)
- TODO: check
+ NOT-FOR-US: Qualcomm driver for Android
CVE-2016-8417
RESERVED
CVE-2016-8416
@@ -25365,15 +25365,15 @@
CVE-2016-6271 (The Bzrtp library (aka libbzrtp) 1.0.x before 1.0.4 allows ...)
TODO: check
CVE-2016-6270 (The handle_certificate function in ...)
- TODO: check
+ NOT-FOR-US: Trend Micro
CVE-2016-6269 (Multiple directory traversal vulnerabilities in Trend Micro
Smart ...)
- TODO: check
+ NOT-FOR-US: Trend Micro
CVE-2016-6268 (Trend Micro Smart Protection Server 2.5 before build 2200, 2.6
before ...)
- TODO: check
+ NOT-FOR-US: Trend Micro
CVE-2016-6267 (SnmpUtils in Trend Micro Smart Protection Server 2.5 before
build ...)
- TODO: check
+ NOT-FOR-US: Trend Micro
CVE-2016-6266 (ccca_ajaxhandler.php in Trend Micro Smart Protection Server 2.5
before ...)
- TODO: check
+ NOT-FOR-US: Trend Micro
CVE-2016-6260
RESERVED
CVE-2016-6259 (Xen 4.5.x through 4.7.x do not implement Supervisor Mode Access
...)
_______________________________________________
Secure-testing-commits mailing list
[email protected]
http://lists.alioth.debian.org/cgi-bin/mailman/listinfo/secure-testing-commits