[Secure-testing-commits] r32647 - data/CVE

Alessandro Ghedini ghedo at moszumanska.debian.org
Thu Mar 5 09:54:53 UTC 2015


Author: ghedo
Date: 2015-03-05 09:54:53 +0000 (Thu, 05 Mar 2015)
New Revision: 32647

Modified:
   data/CVE/list
Log:
Add link to upstream patch for libarchive issue

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2015-03-05 07:43:33 UTC (rev 32646)
+++ data/CVE/list	2015-03-05 09:54:53 UTC (rev 32647)
@@ -3320,6 +3320,7 @@
 CVE-2015-XXXX [directory traversal in bsdcpio]
 	- libarchive <unfixed> (bug #778266)
 	NOTE: CVE Request: http://www.openwall.com/lists/oss-security/2015/01/16/7
+	NOTE: Patch: https://github.com/libarchive/libarchive/commit/59357157706d47c365b2227739e17daba3607526
 CVE-2015-1200 (Race condition in pxz 4.999.99 Beta 3 uses weak file permissions for ...)
 	- pxz 4.999.99~beta3+git659fc9b-3 (bug #775306)
 CVE-2015-1199 [directory traversal vulnerabilities]




More information about the Secure-testing-commits mailing list