[Secure-testing-commits] r20805 - data/CVE

Salvatore Bonaccorso carnil at alioth.debian.org
Fri Jan 4 12:36:36 UTC 2013


Author: carnil
Date: 2013-01-04 12:36:35 +0000 (Fri, 04 Jan 2013)
New Revision: 20805

Modified:
   data/CVE/list
Log:
add CVEs for swi-prolog

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2013-01-04 10:41:59 UTC (rev 20804)
+++ data/CVE/list	2013-01-04 12:36:35 UTC (rev 20805)
@@ -2227,10 +2227,18 @@
 	RESERVED
 CVE-2012-6091
 	RESERVED
-CVE-2012-6090
+CVE-2012-6090 [(Stack-based) Buffer overflows in path canonisation code and when expanding file-names with long paths]
 	RESERVED
-CVE-2012-6089
+	- swi-prolog 6.2.5-1
+	NOTE: https://lists.iai.uni-bonn.de/pipermail/swi-prolog/2012/009428.html
+	NOTE: http://www.swi-prolog.org/git/pl.git/commitdiff/b2c88972e7515ada025e97e7d3ce3e34f81cf33e
+	TODO: check stable, testing and unstable
+CVE-2012-6089 [(Stack-based) Buffer overflows in path canonisation code and when expanding file-names with long paths]
 	RESERVED
+	- swi-prolog 6.2.5-1
+	NOTE: https://lists.iai.uni-bonn.de/pipermail/swi-prolog/2012/009428.html
+	NOTE: http://www.swi-prolog.org/git/pl.git/commitdiff/a9a6fc8a2a9cf3b9154b490a4b1ffaa8be4d723c
+	TODO: check stable, testing and unstable
 CVE-2012-6088 [Signature checking function returned success on (possibly malicious) rpm packages]
 	RESERVED
 	- rpm <unfixed>




More information about the Secure-testing-commits mailing list