[Secure-testing-commits] r47016 - in data: . CVE

Raphaël Hertzog hertzog at moszumanska.debian.org
Tue Dec 13 09:58:16 UTC 2016


Author: hertzog
Date: 2016-12-13 09:58:16 +0000 (Tue, 13 Dec 2016)
New Revision: 47016

Modified:
   data/CVE/list
   data/dla-needed.txt
Log:
Update data for libupnp

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2016-12-13 09:43:56 UTC (rev 47015)
+++ data/CVE/list	2016-12-13 09:58:16 UTC (rev 47016)
@@ -10218,6 +10218,7 @@
 	- libupnp 1:1.6.19+git20160116-1.2 (bug #842093)
 	- libupnp4 <removed>
 	NOTE: https://sourceforge.net/p/pupnp/bugs/133/
+	NOTE: Patch: https://sourceforge.net/p/pupnp/bugs/_discuss/thread/f2781a77/d8a2/attachment/0001-Fix-out-of-bound-access-in-create_url_list-CVE-2016-.patch
 CVE-2016-8861
 	RESERVED
 CVE-2016-8857

Modified: data/dla-needed.txt
===================================================================
--- data/dla-needed.txt	2016-12-13 09:43:56 UTC (rev 47015)
+++ data/dla-needed.txt	2016-12-13 09:58:16 UTC (rev 47016)
@@ -38,10 +38,8 @@
 libical
 --
 libupnp
-  NOTE: No upstream fix yet (2016-11-15)
 --
 libupnp4
-  NOTE: same issues as in libupnp
 --
 libxml-twig-perl
   NOTE: no upstream fix yet (2016-11-02)




More information about the Secure-testing-commits mailing list