Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits: ce12aa0e by security tracker role at 2018-01-05T21:10:18+00:00 automatic update - - - - - 1 changed file: - data/CVE/list Changes: ===================================== data/CVE/list ===================================== --- a/data/CVE/list +++ b/data/CVE/list @@ -1,4 +1,40 @@ -CVE-2018-5244 [XSA-253] +CVE-2018-5251 (In libming 0.4.8, there is an integer signedness error vulnerability ...) + TODO: check +CVE-2018-5250 + RESERVED +CVE-2018-5249 (Cross-site scripting (XSS) vulnerability in Shaarli before 0.8.5 and ...) + TODO: check +CVE-2018-5248 (In ImageMagick 7.0.7-17 Q16, there is a heap-based buffer over-read in ...) + TODO: check +CVE-2018-5247 (In ImageMagick 7.0.7-17 Q16, there are memory leaks in ReadRLAImage in ...) + TODO: check +CVE-2018-5246 (In ImageMagick 7.0.7-17 Q16, there are memory leaks in ReadPATTERNImage ...) + TODO: check +CVE-2018-5245 + RESERVED +CVE-2018-5243 + RESERVED +CVE-2018-5242 + RESERVED +CVE-2018-5241 + RESERVED +CVE-2018-5240 + RESERVED +CVE-2018-5239 + RESERVED +CVE-2018-5238 + RESERVED +CVE-2018-5237 + RESERVED +CVE-2018-5236 + RESERVED +CVE-2018-5235 + RESERVED +CVE-2018-5234 + RESERVED +CVE-2017-18022 (In ImageMagick 7.0.7-12 Q16, there are memory leaks in ...) + TODO: check +CVE-2018-5244 (In Xen 4.10, new infrastructure was introduced as part of an overhaul ...) - xen <not-affected> (Only affects Xen 4.10 onwards) NOTE: https://xenbits.xen.org/xsa/advisory-253.html CVE-2018-5233 @@ -311,7 +347,7 @@ CVE-2018-5080 (In K7 AntiVirus 15.1.0306, the driver file (K7FWHlpr.sys) allows NOT-FOR-US: K7 AntiVirus CVE-2018-5079 (In K7 AntiVirus 15.1.0306, the driver file (K7FWHlpr.sys) allows local ...) NOT-FOR-US: K7 AntiVirus -CVE-2017-18021 +CVE-2017-18021 (It was discovered that QtPass before 1.2.1, when using the built-in ...) - qtpass 1.2.1-1 NOTE: https://lists.zx2c4.com/pipermail/password-store/2018-January/003165.html NOTE: https://github.com/IJHack/QtPass/issues/338 @@ -14627,8 +14663,8 @@ CVE-2017-16669 (coders/wpg.c in GraphicsMagick 1.3.26 allows remote attackers to NOTE: http://hg.code.sf.net/p/graphicsmagick/code/rev/fcd3ed3394f6 CVE-2017-16668 RESERVED -CVE-2017-16666 - RESERVED +CVE-2017-16666 (Xplico before 1.2.1 allows remote authenticated users to execute ...) + TODO: check CVE-2017-16665 (RemObjects Remoting SDK 9 1.0.0.0 for Delphi is vulnerable to a ...) NOT-FOR-US: RemObjects Remoting SDK CVE-2017-16664 (Code injection exists in Kernel/System/Spelling.pm in Open Ticket ...) @@ -17713,12 +17749,12 @@ CVE-2017-15552 RESERVED CVE-2017-15551 RESERVED -CVE-2017-15550 - RESERVED -CVE-2017-15549 - RESERVED -CVE-2017-15548 - RESERVED +CVE-2017-15550 (An issue was discovered in EMC Avamar Server 7.1.x, 7.2.x, 7.3.x, ...) + TODO: check +CVE-2017-15549 (An issue was discovered in EMC Avamar Server 7.1.x, 7.2.x, 7.3.x, ...) + TODO: check +CVE-2017-15548 (An issue was discovered in EMC Avamar Server 7.1.x, 7.2.x, 7.3.x, ...) + TODO: check CVE-2017-15547 RESERVED CVE-2017-15546 @@ -51112,14 +51148,14 @@ CVE-2017-4950 RESERVED CVE-2017-4949 RESERVED -CVE-2017-4948 - RESERVED +CVE-2017-4948 (VMware Workstation (14.x before 14.1.0 and 12.x) and Horizon View ...) + TODO: check CVE-2017-4947 RESERVED -CVE-2017-4946 - RESERVED -CVE-2017-4945 - RESERVED +CVE-2017-4946 (The VMware V4H and V4PA desktop agents (6.x before 6.5.1) contain a ...) + TODO: check +CVE-2017-4945 (VMware Workstation (14.x and 12.x) and Fusion (10.x and 8.x) contain a ...) + TODO: check CVE-2017-4944 RESERVED CVE-2017-4943 (VMware vCenter Server Appliance (vCSA) (6.5 before 6.5 U1d) contains a ...) @@ -58699,563 +58735,563 @@ CVE-2017-2091 (Cybozu Garoon 3.0.0 to 4.2.3 allows remote authenticated attacker CVE-2017-2090 (Directory traversal vulnerability in CubeCart versions prior to 6.1.4 ...) NOT-FOR-US: CubeCart CVE-2017-2089 - RESERVED + REJECTED CVE-2017-2088 - RESERVED + REJECTED CVE-2017-2087 - RESERVED + REJECTED CVE-2017-2086 - RESERVED + REJECTED CVE-2017-2085 - RESERVED + REJECTED CVE-2017-2084 - RESERVED + REJECTED CVE-2017-2083 - RESERVED + REJECTED CVE-2017-2082 - RESERVED + REJECTED CVE-2017-2081 - RESERVED + REJECTED CVE-2017-2080 - RESERVED + REJECTED CVE-2017-2079 - RESERVED + REJECTED CVE-2017-2078 - RESERVED + REJECTED CVE-2017-2077 - RESERVED + REJECTED CVE-2017-2076 - RESERVED + REJECTED CVE-2017-2075 - RESERVED + REJECTED CVE-2017-2074 - RESERVED + REJECTED CVE-2017-2073 - RESERVED + REJECTED CVE-2017-2072 - RESERVED + REJECTED CVE-2017-2071 - RESERVED + REJECTED CVE-2017-2070 - RESERVED + REJECTED CVE-2017-2069 - RESERVED + REJECTED CVE-2017-2068 - RESERVED + REJECTED CVE-2017-2067 - RESERVED + REJECTED CVE-2017-2066 - RESERVED + REJECTED CVE-2017-2065 - RESERVED + REJECTED CVE-2017-2064 - RESERVED + REJECTED CVE-2017-2063 - RESERVED + REJECTED CVE-2017-2062 - RESERVED + REJECTED CVE-2017-2061 - RESERVED + REJECTED CVE-2017-2060 - RESERVED + REJECTED CVE-2017-2059 - RESERVED + REJECTED CVE-2017-2058 - RESERVED + REJECTED CVE-2017-2057 - RESERVED + REJECTED CVE-2017-2056 - RESERVED + REJECTED CVE-2017-2055 - RESERVED + REJECTED CVE-2017-2054 - RESERVED + REJECTED CVE-2017-2053 - RESERVED + REJECTED CVE-2017-2052 - RESERVED + REJECTED CVE-2017-2051 - RESERVED + REJECTED CVE-2017-2050 - RESERVED + REJECTED CVE-2017-2049 - RESERVED + REJECTED CVE-2017-2048 - RESERVED + REJECTED CVE-2017-2047 - RESERVED + REJECTED CVE-2017-2046 - RESERVED + REJECTED CVE-2017-2045 - RESERVED + REJECTED CVE-2017-2044 - RESERVED + REJECTED CVE-2017-2043 - RESERVED + REJECTED CVE-2017-2042 - RESERVED + REJECTED CVE-2017-2041 - RESERVED + REJECTED CVE-2017-2040 - RESERVED + REJECTED CVE-2017-2039 - RESERVED + REJECTED CVE-2017-2038 - RESERVED + REJECTED CVE-2017-2037 - RESERVED + REJECTED CVE-2017-2036 - RESERVED + REJECTED CVE-2017-2035 - RESERVED + REJECTED CVE-2017-2034 - RESERVED + REJECTED CVE-2017-2033 - RESERVED + REJECTED CVE-2017-2032 - RESERVED + REJECTED CVE-2017-2031 - RESERVED + REJECTED CVE-2017-2030 - RESERVED + REJECTED CVE-2017-2029 - RESERVED + REJECTED CVE-2017-2028 - RESERVED + REJECTED CVE-2017-2027 - RESERVED + REJECTED CVE-2017-2026 - RESERVED + REJECTED CVE-2017-2025 - RESERVED + REJECTED CVE-2017-2024 - RESERVED + REJECTED CVE-2017-2023 - RESERVED + REJECTED CVE-2017-2022 - RESERVED + REJECTED CVE-2017-2021 - RESERVED + REJECTED CVE-2017-2020 - RESERVED + REJECTED CVE-2017-2019 - RESERVED + REJECTED CVE-2017-2018 - RESERVED + REJECTED CVE-2017-2017 - RESERVED + REJECTED CVE-2017-2016 - RESERVED + REJECTED CVE-2017-2015 - RESERVED + REJECTED CVE-2017-2014 - RESERVED + REJECTED CVE-2017-2013 - RESERVED + REJECTED CVE-2017-2012 - RESERVED + REJECTED CVE-2017-2011 - RESERVED + REJECTED CVE-2017-2010 - RESERVED + REJECTED CVE-2017-2009 - RESERVED + REJECTED CVE-2017-2008 - RESERVED + REJECTED CVE-2017-2007 - RESERVED + REJECTED CVE-2017-2006 - RESERVED + REJECTED CVE-2017-2005 - RESERVED + REJECTED CVE-2017-2004 - RESERVED + REJECTED CVE-2017-2003 - RESERVED + REJECTED CVE-2017-2002 - RESERVED + REJECTED CVE-2017-2001 - RESERVED + REJECTED CVE-2017-2000 - RESERVED + REJECTED CVE-2017-1999 - RESERVED + REJECTED CVE-2017-1998 - RESERVED + REJECTED CVE-2017-1997 - RESERVED + REJECTED CVE-2017-1996 - RESERVED + REJECTED CVE-2017-1995 - RESERVED + REJECTED CVE-2017-1994 - RESERVED + REJECTED CVE-2017-1993 - RESERVED + REJECTED CVE-2017-1992 - RESERVED + REJECTED CVE-2017-1991 - RESERVED + REJECTED CVE-2017-1990 - RESERVED + REJECTED CVE-2017-1989 - RESERVED + REJECTED CVE-2017-1988 - RESERVED + REJECTED CVE-2017-1987 - RESERVED + REJECTED CVE-2017-1986 - RESERVED + REJECTED CVE-2017-1985 - RESERVED + REJECTED CVE-2017-1984 - RESERVED + REJECTED CVE-2017-1983 - RESERVED + REJECTED CVE-2017-1982 - RESERVED + REJECTED CVE-2017-1981 - RESERVED + REJECTED CVE-2017-1980 - RESERVED + REJECTED CVE-2017-1979 - RESERVED + REJECTED CVE-2017-1978 - RESERVED + REJECTED CVE-2017-1977 - RESERVED + REJECTED CVE-2017-1976 - RESERVED + REJECTED CVE-2017-1975 - RESERVED + REJECTED CVE-2017-1974 - RESERVED + REJECTED CVE-2017-1973 - RESERVED + REJECTED CVE-2017-1972 - RESERVED + REJECTED CVE-2017-1971 - RESERVED + REJECTED CVE-2017-1970 - RESERVED + REJECTED CVE-2017-1969 - RESERVED + REJECTED CVE-2017-1968 - RESERVED + REJECTED CVE-2017-1967 - RESERVED + REJECTED CVE-2017-1966 - RESERVED + REJECTED CVE-2017-1965 - RESERVED + REJECTED CVE-2017-1964 - RESERVED + REJECTED CVE-2017-1963 - RESERVED + REJECTED CVE-2017-1962 - RESERVED + REJECTED CVE-2017-1961 - RESERVED + REJECTED CVE-2017-1960 - RESERVED + REJECTED CVE-2017-1959 - RESERVED + REJECTED CVE-2017-1958 - RESERVED + REJECTED CVE-2017-1957 - RESERVED + REJECTED CVE-2017-1956 - RESERVED + REJECTED CVE-2017-1955 - RESERVED + REJECTED CVE-2017-1954 - RESERVED + REJECTED CVE-2017-1953 - RESERVED + REJECTED CVE-2017-1952 - RESERVED + REJECTED CVE-2017-1951 - RESERVED + REJECTED CVE-2017-1950 - RESERVED + REJECTED CVE-2017-1949 - RESERVED + REJECTED CVE-2017-1948 - RESERVED + REJECTED CVE-2017-1947 - RESERVED + REJECTED CVE-2017-1946 - RESERVED + REJECTED CVE-2017-1945 - RESERVED + REJECTED CVE-2017-1944 - RESERVED + REJECTED CVE-2017-1943 - RESERVED + REJECTED CVE-2017-1942 - RESERVED + REJECTED CVE-2017-1941 - RESERVED + REJECTED CVE-2017-1940 - RESERVED + REJECTED CVE-2017-1939 - RESERVED + REJECTED CVE-2017-1938 - RESERVED + REJECTED CVE-2017-1937 - RESERVED + REJECTED CVE-2017-1936 - RESERVED + REJECTED CVE-2017-1935 - RESERVED + REJECTED CVE-2017-1934 - RESERVED + REJECTED CVE-2017-1933 - RESERVED + REJECTED CVE-2017-1932 - RESERVED + REJECTED CVE-2017-1931 - RESERVED + REJECTED CVE-2017-1930 - RESERVED + REJECTED CVE-2017-1929 - RESERVED + REJECTED CVE-2017-1928 - RESERVED + REJECTED CVE-2017-1927 - RESERVED + REJECTED CVE-2017-1926 - RESERVED + REJECTED CVE-2017-1925 - RESERVED + REJECTED CVE-2017-1924 - RESERVED + REJECTED CVE-2017-1923 - RESERVED + REJECTED CVE-2017-1922 - RESERVED + REJECTED CVE-2017-1921 - RESERVED + REJECTED CVE-2017-1920 - RESERVED + REJECTED CVE-2017-1919 - RESERVED + REJECTED CVE-2017-1918 - RESERVED + REJECTED CVE-2017-1917 - RESERVED + REJECTED CVE-2017-1916 - RESERVED + REJECTED CVE-2017-1915 - RESERVED + REJECTED CVE-2017-1914 - RESERVED + REJECTED CVE-2017-1913 - RESERVED + REJECTED CVE-2017-1912 - RESERVED + REJECTED CVE-2017-1911 - RESERVED + REJECTED CVE-2017-1910 - RESERVED + REJECTED CVE-2017-1909 - RESERVED + REJECTED CVE-2017-1908 - RESERVED + REJECTED CVE-2017-1907 - RESERVED + REJECTED CVE-2017-1906 - RESERVED + REJECTED CVE-2017-1905 - RESERVED + REJECTED CVE-2017-1904 - RESERVED + REJECTED CVE-2017-1903 - RESERVED + REJECTED CVE-2017-1902 - RESERVED + REJECTED CVE-2017-1901 - RESERVED + REJECTED CVE-2017-1900 - RESERVED + REJECTED CVE-2017-1899 - RESERVED + REJECTED CVE-2017-1898 - RESERVED + REJECTED CVE-2017-1897 - RESERVED + REJECTED CVE-2017-1896 - RESERVED + REJECTED CVE-2017-1895 - RESERVED + REJECTED CVE-2017-1894 - RESERVED + REJECTED CVE-2017-1893 - RESERVED + REJECTED CVE-2017-1892 - RESERVED + REJECTED CVE-2017-1891 - RESERVED + REJECTED CVE-2017-1890 - RESERVED + REJECTED CVE-2017-1889 - RESERVED + REJECTED CVE-2017-1888 - RESERVED + REJECTED CVE-2017-1887 - RESERVED + REJECTED CVE-2017-1886 - RESERVED + REJECTED CVE-2017-1885 - RESERVED + REJECTED CVE-2017-1884 - RESERVED + REJECTED CVE-2017-1883 - RESERVED + REJECTED CVE-2017-1882 - RESERVED + REJECTED CVE-2017-1881 - RESERVED + REJECTED CVE-2017-1880 - RESERVED + REJECTED CVE-2017-1879 - RESERVED + REJECTED CVE-2017-1878 - RESERVED + REJECTED CVE-2017-1877 - RESERVED + REJECTED CVE-2017-1876 - RESERVED + REJECTED CVE-2017-1875 - RESERVED + REJECTED CVE-2017-1874 - RESERVED + REJECTED CVE-2017-1873 - RESERVED + REJECTED CVE-2017-1872 - RESERVED + REJECTED CVE-2017-1871 - RESERVED + REJECTED CVE-2017-1870 - RESERVED + REJECTED CVE-2017-1869 - RESERVED + REJECTED CVE-2017-1868 - RESERVED + REJECTED CVE-2017-1867 - RESERVED + REJECTED CVE-2017-1866 - RESERVED + REJECTED CVE-2017-1865 - RESERVED + REJECTED CVE-2017-1864 - RESERVED + REJECTED CVE-2017-1863 - RESERVED + REJECTED CVE-2017-1862 - RESERVED + REJECTED CVE-2017-1861 - RESERVED + REJECTED CVE-2017-1860 - RESERVED + REJECTED CVE-2017-1859 - RESERVED + REJECTED CVE-2017-1858 - RESERVED + REJECTED CVE-2017-1857 - RESERVED + REJECTED CVE-2017-1856 - RESERVED + REJECTED CVE-2017-1855 - RESERVED + REJECTED CVE-2017-1854 - RESERVED + REJECTED CVE-2017-1853 - RESERVED + REJECTED CVE-2017-1852 - RESERVED + REJECTED CVE-2017-1851 - RESERVED + REJECTED CVE-2017-1850 - RESERVED + REJECTED CVE-2017-1849 - RESERVED + REJECTED CVE-2017-1848 - RESERVED + REJECTED CVE-2017-1847 - RESERVED + REJECTED CVE-2017-1846 - RESERVED + REJECTED CVE-2017-1845 - RESERVED + REJECTED CVE-2017-1844 - RESERVED + REJECTED CVE-2017-1843 - RESERVED + REJECTED CVE-2017-1842 - RESERVED + REJECTED CVE-2017-1841 - RESERVED + REJECTED CVE-2017-1840 - RESERVED + REJECTED CVE-2017-1839 - RESERVED + REJECTED CVE-2017-1838 - RESERVED + REJECTED CVE-2017-1837 - RESERVED + REJECTED CVE-2017-1836 - RESERVED + REJECTED CVE-2017-1835 - RESERVED + REJECTED CVE-2017-1834 - RESERVED + REJECTED CVE-2017-1833 - RESERVED + REJECTED CVE-2017-1832 - RESERVED + REJECTED CVE-2017-1831 - RESERVED + REJECTED CVE-2017-1830 - RESERVED + REJECTED CVE-2017-1829 - RESERVED + REJECTED CVE-2017-1828 - RESERVED + REJECTED CVE-2017-1827 - RESERVED + REJECTED CVE-2017-1826 - RESERVED + REJECTED CVE-2017-1825 - RESERVED + REJECTED CVE-2017-1824 - RESERVED + REJECTED CVE-2017-1823 - RESERVED + REJECTED CVE-2017-1822 - RESERVED + REJECTED CVE-2017-1821 - RESERVED + REJECTED CVE-2017-1820 - RESERVED + REJECTED CVE-2017-1819 - RESERVED + REJECTED CVE-2017-1818 - RESERVED + REJECTED CVE-2017-1817 - RESERVED + REJECTED CVE-2017-1816 - RESERVED + REJECTED CVE-2017-1815 - RESERVED + REJECTED CVE-2017-1814 - RESERVED + REJECTED CVE-2017-1813 - RESERVED + REJECTED CVE-2017-1812 - RESERVED + REJECTED CVE-2017-1811 - RESERVED + REJECTED CVE-2017-1810 RESERVED CVE-2017-1809 @@ -122913,8 +122949,8 @@ CVE-2014-8581 RESERVED CVE-2014-8580 (Citrix NetScaler Application Delivery Controller and NetScaler Gateway ...) NOT-FOR-US: Citrix Netscaler -CVE-2014-8579 - RESERVED +CVE-2014-8579 (TRENDnet TEW-823DRU devices with firmware before 1.00b36 have a ...) + TODO: check CVE-2014-8578 (Cross-site scripting (XSS) vulnerability in the Groups panel in ...) - horizon 2014.1.1-3 [wheezy] - horizon <not-affected> (Vulnerable code not present) @@ -123057,8 +123093,7 @@ CVE-2014-8554 (SQL injection vulnerability in the mc_project_get_attachments fun NOTE: http://www.mantisbt.org/bugs/view.php?id=17812 NOTE: http://github.com/mantisbt/mantisbt/commit/99ffb0af (1.2.x branch) NOTE: http://github.com/mantisbt/mantisbt/commit/5faf97ab (master) -CVE-2014-8540 - RESERVED +CVE-2014-8540 (The groups API in GitLab 6.x and 7.x before 7.4.3 allows remote ...) - gitlab <not-affected> (Fixed before initial upload to Debian) CVE-2014-8538 (The Hijab Modern (aka com.Aisyaidea.HijabModern) application 1.0 for ...) NOT-FOR-US: Hijab Modern (aka com.Aisyaidea.HijabModern) application for Android @@ -123605,10 +123640,10 @@ CVE-2014-8338 RESERVED CVE-2014-8337 RESERVED -CVE-2014-8336 - RESERVED -CVE-2014-8335 - RESERVED +CVE-2014-8336 (The "Sql Run Query" panel in WP-DBManager (aka Database Manager) ...) + TODO: check +CVE-2014-8335 ((1) wp-dbmanager.php and (2) database-manage.php in the WP-DBManager ...) + TODO: check CVE-2014-8334 (The WP-DBManager (aka Database Manager) plugin before 2.7.2 for ...) NOT-FOR-US: WordPress plugin wp-dbmanager CVE-2014-8332 View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/ce12aa0e8e9059d1a1a99cc227a40562af3598b4 --- View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/ce12aa0e8e9059d1a1a99cc227a40562af3598b4 You're receiving this email because of your account on salsa.debian.org.
_______________________________________________ Secure-testing-commits mailing list Secure-testing-commits@lists.alioth.debian.org http://lists.alioth.debian.org/cgi-bin/mailman/listinfo/secure-testing-commits