[Secure-testing-commits] r30571 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Sat Dec 6 18:46:07 UTC 2014


Author: carnil
Date: 2014-12-06 18:46:07 +0000 (Sat, 06 Dec 2014)
New Revision: 30571

Modified:
   data/CVE/list
Log:
pcre3 issue unfixed due to reverted upload

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2014-12-06 12:03:51 UTC (rev 30570)
+++ data/CVE/list	2014-12-06 18:46:07 UTC (rev 30571)
@@ -1361,7 +1361,7 @@
 	RESERVED
 CVE-2014-8964 [pcre: heap buffer overflow]
 	RESERVED
-	- pcre3 1:8.36-1 (bug #770478)
+	- pcre3 <unfixed> (bug #770478)
 	[wheezy] - pcre3 <no-dsa> (Minor issue)
 	[squeeze] - pcre3 <no-dsa> (Minor issue)
 	NOTE: http://bugs.exim.org/show_bug.cgi?id=1546
@@ -1369,6 +1369,7 @@
 	NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=1166147#c2: Might
 	NOTE: be to intrusive to backport as extensive additional changes
 	NOTE: seem to be needed for older pcre3 versions.
+	NOTE: Originally fixed already with 1:8.36-1 but upload was reverted.
 CVE-2014-8963
 	RESERVED
 CVE-2014-8962 (Stack-based buffer overflow in stream_decoder.c in libFLAC before ...)




More information about the Secure-testing-commits mailing list