[Secure-testing-commits] r28386 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Wed Aug 20 17:50:26 UTC 2014


Author: carnil
Date: 2014-08-20 17:50:26 +0000 (Wed, 20 Aug 2014)
New Revision: 28386

Modified:
   data/CVE/list
Log:
CVE-2014-4698/php5 fixed in unstable

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2014-08-20 17:46:56 UTC (rev 28385)
+++ data/CVE/list	2014-08-20 17:50:26 UTC (rev 28386)
@@ -1565,7 +1565,9 @@
 	[squeeze] - linux-2.6 2.6.32-48squeeze8
 	NOTE: https://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=b9cd18de4db3c9ffa7e17b0dc0ca99ed5aa4d43a
 CVE-2014-4698 (Use-after-free vulnerability in ext/spl/spl_array.c in the SPL ...)
-	- php5 <unfixed> (unimportant)
+	- php5 5.6.0~rc3+dfsg-1 (unimportant)
+	NOTE: http://git.php.net/?p=php-src.git;a=commit;h=22882a9d89712ff2b6ebc20a689a89452bba4dcd
+	NOTE: https://bugs.php.net/bug.php?id=67539
 	NOTE: exploitable by malicious scripts only
 CVE-2014-4697
 	RESERVED




More information about the Secure-testing-commits mailing list