[Secure-testing-commits] r46227 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Wed Nov 16 06:14:40 UTC 2016


Author: carnil
Date: 2016-11-16 06:14:40 +0000 (Wed, 16 Nov 2016)
New Revision: 46227

Modified:
   data/CVE/list
Log:
Two src:jq issues now fixed in unstable

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2016-11-16 06:04:01 UTC (rev 46226)
+++ data/CVE/list	2016-11-16 06:14:40 UTC (rev 46227)
@@ -17024,7 +17024,7 @@
 CVE-2016-4059 (Use-after-free vulnerability in Foxit Reader and PhantomPDF before ...)
 	NOT-FOR-US: Foxit
 CVE-2016-4074 (The jv_dump_term function in jq 1.5 allows remote attackers to cause a ...)
-	- jq <unfixed> (low; bug #822456)
+	- jq 1.5+dfsg-1.1 (low; bug #822456)
 	[jessie] - jq <no-dsa> (Minor issue)
 	NOTE: https://github.com/stedolan/jq/issues/1136
 	NOTE: http://www.openwall.com/lists/oss-security/2016/04/24/3
@@ -17249,7 +17249,7 @@
 	NOTE: http://perl5.git.perl.org/perl.git/commitdiff/22b433eff9a1ffa2454e18405a56650f07b385b5
 	NOTE: http://www.openwall.com/lists/oss-security/2016/04/20/5
 CVE-2015-8863 (Off-by-one error in the tokenadd function in jv_parse.c in jq allows ...)
-	- jq <unfixed> (low; bug #802231)
+	- jq 1.5+dfsg-1.1 (low; bug #802231)
 	[jessie] - jq <no-dsa> (Minor issue)
 	NOTE: https://github.com/stedolan/jq/issues/995
 	NOTE: https://github.com/stedolan/jq/commit/8eb1367ca44e772963e704a700ef72ae2e12babd




More information about the Secure-testing-commits mailing list