[Secure-testing-commits] r29050 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Thu Sep 25 15:16:04 UTC 2014


Author: carnil
Date: 2014-09-25 15:16:04 +0000 (Thu, 25 Sep 2014)
New Revision: 29050

Modified:
   data/CVE/list
Log:
Add upstream commits for libvncserver issues

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2014-09-25 15:12:55 UTC (rev 29049)
+++ data/CVE/list	2014-09-25 15:16:04 UTC (rev 29050)
@@ -2390,23 +2390,26 @@
 CVE-2014-6055 [Multiple stack overflows in File Transfer feature]
 	RESERVED
 	- libvncserver <unfixed> (bug #762745)
-	TODO: check
+	NOTE: https://github.com/newsoft/libvncserver/commit/06ccdf016154fde8eccb5355613ba04c59127b2e
+	NOTE: https://github.com/newsoft/libvncserver/commit/f528072216dec01cee7ca35d94e171a3b909e677
 CVE-2014-6054 [Server crash when scaling factor is set to zero]
 	RESERVED
 	- libvncserver <unfixed> (bug #762745)
-	TODO: check
+	NOTE: https://github.com/newsoft/libvncserver/commit/6037a9074d52b1963c97cb28ea1096c7c14cbf28
+	NOTE: https://github.com/newsoft/libvncserver/commit/05a9bd41a8ec0a9d580a8f420f41718bdd235446
 CVE-2014-6053 [Server crash on a very large ClientCutText message]
 	RESERVED
 	- libvncserver <unfixed> (bug #762745)
-	TODO: check
+	NOTE: https://github.com/newsoft/libvncserver/commit/6037a9074d52b1963c97cb28ea1096c7c14cbf28
+	NOTE: https://github.com/newsoft/libvncserver/commit/05a9bd41a8ec0a9d580a8f420f41718bdd235446
 CVE-2014-6052 [Lack of malloc() return value checking on client side]
 	RESERVED
 	- libvncserver <unfixed> (bug #762745)
-	TODO: check
+	NOTE: https://github.com/newsoft/libvncserver/commit/045a044e8ae79db9244593fbce154cdf6e843273
 CVE-2014-6051 [Integer overflow in MallocFrameBuffer() on client side]
 	RESERVED
 	- libvncserver <unfixed> (bug #762745)
-	TODO: check
+	NOTE: https://github.com/newsoft/libvncserver/commit/045a044e8ae79db9244593fbce154cdf6e843273
 CVE-2014-6050
 	RESERVED
 CVE-2014-6049




More information about the Secure-testing-commits mailing list