[Secure-testing-commits] r42629 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Sat Jun 18 18:56:23 UTC 2016


Author: carnil
Date: 2016-06-18 18:56:23 +0000 (Sat, 18 Jun 2016)
New Revision: 42629

Modified:
   data/CVE/list
Log:
Add bug reference for CVE-2016-4970/netty, #827620

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2016-06-18 18:41:16 UTC (rev 42628)
+++ data/CVE/list	2016-06-18 18:56:23 UTC (rev 42629)
@@ -1939,9 +1939,9 @@
 	[jessie] - wget <no-dsa> (Minor issue)
 	NOTE: http://lists.gnu.org/archive/html/info-gnu/2016-06/msg00004.html
 	NOTE: http://git.savannah.gnu.org/cgit/wget.git/commit/?id=e996e322ffd42aaa051602da182d03178d0f13e1 (v1.18)
-CVE-2016-4970
+CVE-2016-4970 [nfinite loop vulnerability when handling renegotiation using SslProvider.OpenSsl]
 	RESERVED
-	- netty <unfixed>
+	- netty <unfixed> (bug #827620)
 	[jessie] - netty <not-affected> (Vulnerable code not present)
 	NOTE: Versions affected: Netty 4.0.0.Final - 4.0.36.Final and 4.1.0.Final
 CVE-2016-4969




More information about the Secure-testing-commits mailing list