[Secure-testing-commits] r47370 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Fri Dec 23 06:04:31 UTC 2016


Author: carnil
Date: 2016-12-23 06:04:31 +0000 (Fri, 23 Dec 2016)
New Revision: 47370

Modified:
   data/CVE/list
Log:
Add three new libxml2 issues

>From external check to Red Hat bugzilla. Unfortunately no further
details than the subject are mentioned there. Asked for details.

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2016-12-23 05:44:28 UTC (rev 47369)
+++ data/CVE/list	2016-12-23 06:04:31 UTC (rev 47370)
@@ -8492,12 +8492,18 @@
 	RESERVED
 CVE-2016-9599
 	RESERVED
-CVE-2016-9598
+CVE-2016-9598 [out-of-bounds read]
 	RESERVED
-CVE-2016-9597
+	- libxml2 <unfixed>
+	NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=1408306 (asked for details)
+CVE-2016-9597 [stack overflow before detecting invalid XML file]
 	RESERVED
-CVE-2016-9596
+	- libxml2 <unfixed>
+	NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=1408305 (asked for details)
+CVE-2016-9596 [stack exhaustion while parsing xml files in recovery mode]
 	RESERVED
+	- libxml2 <unfixed>
+	NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=1408302 (asked for details)
 CVE-2016-9595
 	RESERVED
 	NOT-FOR-US: Katello




More information about the Secure-testing-commits mailing list