[Secure-testing-commits] r33347 - data/CVE
Salvatore Bonaccorso
carnil at moszumanska.debian.org
Fri Apr 3 04:17:35 UTC 2015
Author: carnil
Date: 2015-04-03 04:17:35 +0000 (Fri, 03 Apr 2015)
New Revision: 33347
Modified:
data/CVE/list
Log:
Add fixed version for CVE-2015-2060/cabextract, #778753
Modified: data/CVE/list
===================================================================
--- data/CVE/list 2015-04-03 04:16:04 UTC (rev 33346)
+++ data/CVE/list 2015-04-03 04:17:35 UTC (rev 33347)
@@ -3080,7 +3080,7 @@
NOTE: powerpc affected from v2.6.30 to 3.2
CVE-2015-2060 [directory traversal; related to overlong utf-8 encoding for /]
RESERVED
- - cabextract <unfixed> (bug #778753)
+ - cabextract 1.6-1 (bug #778753)
NOTE: http://www.openwall.com/lists/oss-security/2015/02/18/3
NOTE: Upstream commit: http://sourceforge.net/p/libmspack/code/217
NOTE: CVE assigned for issue were path traversal occurs because the unpatched
More information about the Secure-testing-commits
mailing list