Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker
Commits: 5d79ec54 by Moritz Muehlenhoff at 2018-03-31T21:49:37+02:00 new exiv issues - - - - - 1 changed file: - data/CVE/list Changes: ===================================== data/CVE/list ===================================== --- a/data/CVE/list +++ b/data/CVE/list @@ -11,11 +11,16 @@ CVE-2018-9148 (Western Digital WD My Cloud v04.05.00-320 devices embed the sessi CVE-2018-9147 (Cross-site scripting (XSS) vulnerabilities in version 7.5.7 of Gespage ...) NOT-FOR-US: Gespage CVE-2018-9146 (In Exiv2 0.26, there is an out-of-bounds read in ...) - TODO: check + - exiv2 <undetermined> + NOTE: https://github.com/Exiv2/exiv2/issues/254 + NOTE: https://github.com/xiaoqx/pocs/tree/master/exiv2 CVE-2018-9145 (In Exiv2 0.26, there is a reachable assertion abort in the function ...) - TODO: check + - exiv2 <undetermined> + NOTE: https://github.com/xiaoqx/pocs/tree/master/exiv2 CVE-2018-9144 (In Exiv2 0.26, there is an out-of-bounds read in ...) - TODO: check + - exiv2 <undetermined> + NOTE: https://github.com/Exiv2/exiv2/issues/254 + NOTE: https://github.com/xiaoqx/pocs/tree/master/exiv2 CVE-2018-9143 (On Samsung mobile devices with M(6.0) and N(7.x) software, a heap ...) NOT-FOR-US: Samsung CVE-2018-9142 (On Samsung mobile devices with N(7.x) software, attackers can install ...) View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/5d79ec54a7628e2e6e4e17f14cad586bd2280fbe --- View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/5d79ec54a7628e2e6e4e17f14cad586bd2280fbe You're receiving this email because of your account on salsa.debian.org.
_______________________________________________ Secure-testing-commits mailing list Secure-testing-commits@lists.alioth.debian.org http://lists.alioth.debian.org/cgi-bin/mailman/listinfo/secure-testing-commits