[Secure-testing-commits] r33347 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Fri Apr 3 04:17:35 UTC 2015


Author: carnil
Date: 2015-04-03 04:17:35 +0000 (Fri, 03 Apr 2015)
New Revision: 33347

Modified:
   data/CVE/list
Log:
Add fixed version for CVE-2015-2060/cabextract, #778753

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2015-04-03 04:16:04 UTC (rev 33346)
+++ data/CVE/list	2015-04-03 04:17:35 UTC (rev 33347)
@@ -3080,7 +3080,7 @@
 	NOTE: powerpc affected from v2.6.30 to 3.2
 CVE-2015-2060 [directory traversal; related to overlong utf-8 encoding for /]
 	RESERVED
-	- cabextract <unfixed> (bug #778753)
+	- cabextract 1.6-1 (bug #778753)
 	NOTE: http://www.openwall.com/lists/oss-security/2015/02/18/3
 	NOTE: Upstream commit: http://sourceforge.net/p/libmspack/code/217
 	NOTE: CVE assigned for issue were path traversal occurs because the unpatched




More information about the Secure-testing-commits mailing list