[Secure-testing-commits] r46840 - data/CVE
Salvatore Bonaccorso
carnil at moszumanska.debian.org
Wed Dec 7 05:41:26 UTC 2016
Author: carnil
Date: 2016-12-07 05:41:26 +0000 (Wed, 07 Dec 2016)
New Revision: 46840
Modified:
data/CVE/list
Log:
Add fixing commit for roundcube
Modified: data/CVE/list
===================================================================
--- data/CVE/list 2016-12-07 05:27:25 UTC (rev 46839)
+++ data/CVE/list 2016-12-07 05:41:26 UTC (rev 46840)
@@ -161,6 +161,7 @@
CVE-2016-XXXX [Command Execution via Email]
- roundcube <unfixed> (bug #847287)
NOTE: https://blog.ripstech.com/2016/roundcube-command-execution-via-email/
+ NOTE: Fixed by: https://github.com/roundcube/roundcubemail/commit/f84233785ddeed01445fc855f3ae1e8a62f167e1
NOTE: CVE has been already requested by discoverer of the issue and will be published "shortly"
CVE-2016-9866
RESERVED
More information about the Secure-testing-commits
mailing list