[Secure-testing-commits] r42642 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Sun Jun 19 15:15:37 UTC 2016


Author: carnil
Date: 2016-06-19 15:15:37 +0000 (Sun, 19 Jun 2016)
New Revision: 42642

Modified:
   data/CVE/list
Log:
tidy-html5 entered the archive, mark as undetermined, needs check, probably fixed in version entering the archive

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2016-06-19 13:33:22 UTC (rev 42641)
+++ data/CVE/list	2016-06-19 15:15:37 UTC (rev 42642)
@@ -7887,7 +7887,7 @@
 	NOTE: http://www.openwall.com/lists/oss-security/2016/03/10/5
 	NOTE: http://www.openwall.com/lists/oss-security/2016/03/13/1
 CVE-2016-XXXX [infinite loop parsing an html file]
-	- tidy-html5 <itp> (bug #770129)
+	- tidy-html5 <undetermined>
 	NOTE: https://github.com/htacg/tidy-html5/issues/380
 	NOTE: CVE Request: http://www.openwall.com/lists/oss-security/2016/03/04/2
 CVE-2016-2858 (QEMU, when built with the Pseudo Random Number Generator (PRNG) ...)
@@ -8696,7 +8696,7 @@
 	NOTE: fixed in 3.0.7 upstream, mark as fixed with first 4.x version in unstable
 	NOTE: 4.x not affected
 CVE-2016-XXXX [read out-of-bounds in TextEndsWithNewline]
-	- tidy-html5 <itp> (bug #770129)
+	- tidy-html5 <undetermined>
 	NOTE: https://github.com/htacg/tidy-html5/issues/379
 	NOTE: CVE Request: http://www.openwall.com/lists/oss-security/2016/02/28/8
 CVE-2016-XXXX [unsafe use of /tmp]
@@ -13690,7 +13690,7 @@
 	NOTE: Introduced by (at least after): http://git.qemu.org/?p=qemu.git;a=commit;h=69b910399a3c40620a5213adaeb14a37366d97ac
 	NOTE: http://www.openwall.com/lists/oss-security/2016/01/04/1
 CVE-2016-XXXX [use-after-free]
-	- tidy-html5 <itp> (bug #770129)
+	- tidy-html5 <undetermined>
 	NOTE: https://github.com/htacg/tidy-html5/issues/341
 	NOTE: https://github.com/htacg/tidy-html5/pull/368
 	NOTE: CVE Request: http://www.openwall.com/lists/oss-security/2016/01/03/4




More information about the Secure-testing-commits mailing list