[Secure-testing-commits] r47016 - in data: . CVE
Raphaël Hertzog
hertzog at moszumanska.debian.org
Tue Dec 13 09:58:16 UTC 2016
Author: hertzog
Date: 2016-12-13 09:58:16 +0000 (Tue, 13 Dec 2016)
New Revision: 47016
Modified:
data/CVE/list
data/dla-needed.txt
Log:
Update data for libupnp
Modified: data/CVE/list
===================================================================
--- data/CVE/list 2016-12-13 09:43:56 UTC (rev 47015)
+++ data/CVE/list 2016-12-13 09:58:16 UTC (rev 47016)
@@ -10218,6 +10218,7 @@
- libupnp 1:1.6.19+git20160116-1.2 (bug #842093)
- libupnp4 <removed>
NOTE: https://sourceforge.net/p/pupnp/bugs/133/
+ NOTE: Patch: https://sourceforge.net/p/pupnp/bugs/_discuss/thread/f2781a77/d8a2/attachment/0001-Fix-out-of-bound-access-in-create_url_list-CVE-2016-.patch
CVE-2016-8861
RESERVED
CVE-2016-8857
Modified: data/dla-needed.txt
===================================================================
--- data/dla-needed.txt 2016-12-13 09:43:56 UTC (rev 47015)
+++ data/dla-needed.txt 2016-12-13 09:58:16 UTC (rev 47016)
@@ -38,10 +38,8 @@
libical
--
libupnp
- NOTE: No upstream fix yet (2016-11-15)
--
libupnp4
- NOTE: same issues as in libupnp
--
libxml-twig-perl
NOTE: no upstream fix yet (2016-11-02)
More information about the Secure-testing-commits
mailing list