[Secure-testing-commits] r38752 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Thu Jan 7 18:22:54 UTC 2016


Author: carnil
Date: 2016-01-07 18:22:54 +0000 (Thu, 07 Jan 2016)
New Revision: 38752

Modified:
   data/CVE/list
Log:
Add temporary item for lighttpd issue

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2016-01-07 17:45:09 UTC (rev 38751)
+++ data/CVE/list	2016-01-07 18:22:54 UTC (rev 38752)
@@ -2,6 +2,10 @@
 	- wordpress <unfixed>
 	NOTE: https://wordpress.org/news/2016/01/wordpress-4-4-1-security-and-maintenance-release/
 	TODO: check
+CVE-2015-XXXX [use after free / double free]
+	- lighttpd 1.4.39-1
+	NOTE: http://redmine.lighttpd.net/issues/2700
+	TODO: check older versions
 CVE-2016-1503 [heap overflow via malformed dhcp responses in print_option (via dhcp_envoption1) due to incorrect option length values]
 	- dhcpcd5 <unfixed>
 	- dhcpcd <removed>




More information about the Secure-testing-commits mailing list