Author: elbrus
Date: 2017-10-10 19:57:33 +0000 (Tue, 10 Oct 2017)
New Revision: 56581

Modified:
   data/CVE/list
Log:
CVE-2017-15194/cacti was introduced in 1.0.0, so stretch and older are not 
affected

Modified: data/CVE/list
===================================================================
--- data/CVE/list       2017-10-10 19:53:21 UTC (rev 56580)
+++ data/CVE/list       2017-10-10 19:57:33 UTC (rev 56581)
@@ -58,6 +58,9 @@
        RESERVED
 CVE-2017-15194 (include/global_session.php in Cacti 1.1.25 has XSS related to 
(1) the ...)
        - cacti <unfixed>
+       [stretch] - cacti <not-affected> (Vulnerable code introduced in 1.0.0)
+       [jessie] - cacti <not-affected> (Vulnerable code introduced in 1.0.0)
+       [wheezy] - cacti <not-affected> (Vulnerable code introduced in 1.0.0)
        NOTE: https://github.com/Cacti/cacti/issues/1010
        NOTE: 
https://github.com/Cacti/cacti/commit/93f661d8adcfa6618b11522cdab30e97bada33fd
 CVE-2017-15186


_______________________________________________
Secure-testing-commits mailing list
Secure-testing-commits@lists.alioth.debian.org
http://lists.alioth.debian.org/cgi-bin/mailman/listinfo/secure-testing-commits

Reply via email to