[Secure-testing-commits] r41834 - data/CVE

Moritz Muehlenhoff jmm at moszumanska.debian.org
Wed May 18 08:17:24 UTC 2016


Author: jmm
Date: 2016-05-18 08:17:24 +0000 (Wed, 18 May 2016)
New Revision: 41834

Modified:
   data/CVE/list
Log:
mark PHP issue as non-issue


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2016-05-18 06:26:14 UTC (rev 41833)
+++ data/CVE/list	2016-05-18 08:17:24 UTC (rev 41834)
@@ -27171,10 +27171,11 @@
 CVE-2015-4117
 	RESERVED
 CVE-2015-4116 (Use-after-free vulnerability in the spl_ptr_heap_insert function in ...)
-	- php5 5.6.11+dfsg-1
+	- php5 5.6.11+dfsg-1 (unimportant)
 	[jessie] - php5 5.6.12+dfsg-0+deb8u1
 	NOTE: https://bugs.php.net/bug.php?id=69737
 	NOTE: Fixed in 5.6.11, 5.5.27
+	NOTE: Not treated as security issue, only triggerable with malformed PHP code
 CVE-2015-4115
 	RESERVED
 CVE-2015-4114




More information about the Secure-testing-commits mailing list