[Secure-testing-commits] r27497 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Fri Jun 27 12:16:29 UTC 2014


Author: carnil
Date: 2014-06-27 12:16:29 +0000 (Fri, 27 Jun 2014)
New Revision: 27497

Modified:
   data/CVE/list
Log:
Add CVE-2014-3479/{file,php5}

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2014-06-27 12:12:14 UTC (rev 27496)
+++ data/CVE/list	2014-06-27 12:16:29 UTC (rev 27497)
@@ -2548,8 +2548,12 @@
 	- jbossas4 <not-affected> (Only builds a few libraries, not the full application server, #581226)
 CVE-2014-3480
 	RESERVED
-CVE-2014-3479
+CVE-2014-3479 [cdf_check_stream_offset insufficient boundary check]
 	RESERVED
+	- file 1:5.19-1
+	NOTE: https://github.com/file/file/commit/36fadd29849b8087af9f4586f89dbf74ea45be67
+	- php5 5.6.0~rc1+dfsg-1
+	NOTE: https://bugs.php.net/bug.php?id=67411
 CVE-2014-3478
 	RESERVED
 CVE-2014-3477




More information about the Secure-testing-commits mailing list