[Secure-testing-commits] r44111 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Tue Aug 23 13:32:16 UTC 2016


Author: carnil
Date: 2016-08-23 13:32:16 +0000 (Tue, 23 Aug 2016)
New Revision: 44111

Modified:
   data/CVE/list
Log:
Update CVE-2016-4473/php5

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2016-08-23 11:25:00 UTC (rev 44110)
+++ data/CVE/list	2016-08-23 13:32:16 UTC (rev 44111)
@@ -8045,11 +8045,13 @@
 	NOT-FOR-US: Red Hat OpenStack Overcloud image
 CVE-2016-4473
 	RESERVED
-	- php7.0 <undetermined>
-	- php5 <undetermined>
+	- php5 5.6.23+dfsg-1
+	[jessie] - php5 5.6.23+dfsg-0+deb8u1
 	NOTE: The issue was introduced as part CVE-2015-6833, which was applied upstream
 	NOTE: in versions 5.4.44, 5.5.28, and 5.6.12.
-	TODO: check
+	NOTE: https://bugs.php.net/bug.php?id=72321
+	NOTE: http://git.php.net/?p=php-src.git;a=commitdiff;h=d144590d38fa321b46b8e199c754006318985c84
+	NOTE: Fixed in 5.6.23
 CVE-2016-4472 (The overflow protection in Expat is removed by compilers with certain ...)
 	{DSA-3582-1 DLA-483-1}
 	- expat 2.1.1-2




More information about the Secure-testing-commits mailing list