[Secure-testing-commits] r40224 - data/CVE
Salvatore Bonaccorso
carnil at moszumanska.debian.org
Tue Mar 8 12:29:48 UTC 2016
Author: carnil
Date: 2016-03-08 12:29:48 +0000 (Tue, 08 Mar 2016)
New Revision: 40224
Modified:
data/CVE/list
Log:
Mark fixes for two php5 issues
Modified: data/CVE/list
===================================================================
--- data/CVE/list 2016-03-08 12:27:42 UTC (rev 40223)
+++ data/CVE/list 2016-03-08 12:29:48 UTC (rev 40224)
@@ -29,12 +29,12 @@
CVE-2016-2842 (The doapr_outch function in crypto/bio/b_print.c in OpenSSL 1.0.1 ...)
TODO: check
CVE-2016-XXXX [Out-of-Bound Read in phar_parse_zipfile()]
- - php5 <unfixed>
+ - php5 5.6.19+dfsg-1
NOTE: https://bugs.php.net/bug.php?id=71498
NOTE: Fixed in 5.5.33, 5.6.19
TODO: check
CVE-2016-XXXX [Use-After-Free / Double-Free in WDDX Deserialize]
- - php5 <unfixed>
+ - php5 5.6.19+dfsg-1
NOTE: https://bugs.php.net/bug.php?id=71587
NOTE: Fixed in 5.5.33, 5.6.19
TODO: check
More information about the Secure-testing-commits
mailing list