[Secure-testing-commits] r47508 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Wed Dec 28 04:39:33 UTC 2016


Author: carnil
Date: 2016-12-28 04:39:33 +0000 (Wed, 28 Dec 2016)
New Revision: 47508

Modified:
   data/CVE/list
Log:
Update note for libphp-phpmailer issue

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2016-12-27 21:54:44 UTC (rev 47507)
+++ data/CVE/list	2016-12-28 04:39:33 UTC (rev 47508)
@@ -2,7 +2,8 @@
 	RESERVED
 	- libphp-phpmailer <unfixed> (bug #849365)
 	NOTE: https://legalhackers.com/advisories/PHPMailer-Exploit-Remote-Code-Exec-CVE-2016-10033-Vuln.html
-	NOTE: Fixed by: https://github.com/PHPMailer/PHPMailer/commit/4835657cd639fbd09afd33307cef164edf807cdc#diff-ace81e501931d8763b49f2410cf3094dR1449
+	NOTE: Fixed by: https://github.com/PHPMailer/PHPMailer/commit/4835657cd639fbd09afd33307cef164edf807cdc
+	NOTE: Fix potentially incomplete, cf http://www.openwall.com/lists/oss-security/2016/12/28/1
 CVE-2016-10032
 	RESERVED
 CVE-2016-10031




More information about the Secure-testing-commits mailing list