[Secure-testing-commits] r41109 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Sun Apr 24 10:35:47 UTC 2016


Author: carnil
Date: 2016-04-24 10:35:47 +0000 (Sun, 24 Apr 2016)
New Revision: 41109

Modified:
   data/CVE/list
Log:
Add new jq issue

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2016-04-24 10:07:45 UTC (rev 41108)
+++ data/CVE/list	2016-04-24 10:35:47 UTC (rev 41109)
@@ -1,3 +1,8 @@
+CVE-2016-XXXX [Stack exhaustion parsing a JSON file]
+	- jq <unfixed>
+	NOTE: https://github.com/stedolan/jq/issues/1136
+	NOTE: CVE Request: http://www.openwall.com/lists/oss-security/2016/04/24/3
+	TODO: check versions
 CVE-2016-4069 [Protect download urls against CSRF using unique request tokens]
 	- roundcube <unfixed> (bug #822333)
 	NOTE: https://github.com/roundcube/roundcubemail/issues/4957




More information about the Secure-testing-commits mailing list