[Secure-testing-commits] r40855 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Sun Apr 10 08:56:49 UTC 2016


Author: carnil
Date: 2016-04-10 08:56:49 +0000 (Sun, 10 Apr 2016)
New Revision: 40855

Modified:
   data/CVE/list
Log:
Add heap-based buffer overread issue in libxml2

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2016-04-10 08:32:40 UTC (rev 40854)
+++ data/CVE/list	2016-04-10 08:56:49 UTC (rev 40855)
@@ -1,3 +1,8 @@
+CVE-2016-XXXX [Heap-based buffer overread in xmlNextChar]
+	- libxml2 <unfixed>
+	NOTE: https://git.gnome.org/browse/libxml2/commit/?id=a7a94612aa3b16779e2c74e1fa353b5d9786c602
+	NOTE: https://bugzilla.gnome.org/show_bug.cgi?id=759671
+	TODO: check versions, upstream but not yet public open but referenced in commit
 CVE-2016-XXXX [GIF loader: out-of-bounds read]
 	- imlib2 <unfixed> (bug #785369)
 	NOTE: https://git.enlightenment.org/legacy/imlib2.git/commit/?id=37a96801663b7b4cd3fbe56cc0eb8b6a17e766a8




More information about the Secure-testing-commits mailing list