[Secure-testing-commits] r40224 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Tue Mar 8 12:29:48 UTC 2016


Author: carnil
Date: 2016-03-08 12:29:48 +0000 (Tue, 08 Mar 2016)
New Revision: 40224

Modified:
   data/CVE/list
Log:
Mark fixes for two php5 issues

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2016-03-08 12:27:42 UTC (rev 40223)
+++ data/CVE/list	2016-03-08 12:29:48 UTC (rev 40224)
@@ -29,12 +29,12 @@
 CVE-2016-2842 (The doapr_outch function in crypto/bio/b_print.c in OpenSSL 1.0.1 ...)
 	TODO: check
 CVE-2016-XXXX [Out-of-Bound Read in phar_parse_zipfile()]
-	- php5 <unfixed>
+	- php5 5.6.19+dfsg-1
 	NOTE: https://bugs.php.net/bug.php?id=71498
 	NOTE: Fixed in 5.5.33, 5.6.19
 	TODO: check
 CVE-2016-XXXX [Use-After-Free / Double-Free in WDDX Deserialize]
-	- php5 <unfixed>
+	- php5 5.6.19+dfsg-1
 	NOTE: https://bugs.php.net/bug.php?id=71587
 	NOTE: Fixed in 5.5.33, 5.6.19
 	TODO: check




More information about the Secure-testing-commits mailing list