[Secure-testing-commits] r47126 - data/CVE
Salvatore Bonaccorso
carnil at moszumanska.debian.org
Fri Dec 16 12:00:47 UTC 2016
Author: carnil
Date: 2016-12-16 12:00:46 +0000 (Fri, 16 Dec 2016)
New Revision: 47126
Modified:
data/CVE/list
Log:
Add fixed version for CVE-2016-9920
Modified: data/CVE/list
===================================================================
--- data/CVE/list 2016-12-16 10:57:17 UTC (rev 47125)
+++ data/CVE/list 2016-12-16 12:00:46 UTC (rev 47126)
@@ -1562,7 +1562,7 @@
RESERVED
CVE-2016-9920 (steps/mail/sendmail.inc in Roundcube before 1.1.7 and 1.2.x before ...)
{DLA-737-1}
- - roundcube <unfixed> (bug #847287)
+ - roundcube 1.2.3+dfsg.1-1 (bug #847287)
NOTE: https://blog.ripstech.com/2016/roundcube-command-execution-via-email/
NOTE: Fixed by: https://github.com/roundcube/roundcubemail/commit/f84233785ddeed01445fc855f3ae1e8a62f167e1
NOTE: Fixed by: https://github.com/roundcube/roundcubemail/commit/aa6bf38843f51a0fc7205acc98a7b84f3c4c9c4f
More information about the Secure-testing-commits
mailing list