[Secure-testing-commits] r46460 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Tue Nov 22 20:06:57 UTC 2016


Author: carnil
Date: 2016-11-22 20:06:57 +0000 (Tue, 22 Nov 2016)
New Revision: 46460

Modified:
   data/CVE/list
Log:
Add fixing commit for CVE-2016-4332/hdf5

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2016-11-22 19:48:20 UTC (rev 46459)
+++ data/CVE/list	2016-11-22 20:06:57 UTC (rev 46460)
@@ -17263,6 +17263,7 @@
 CVE-2016-4332 (The library's failure to check if certain message types support a ...)
 	- hdf5 <unfixed> (bug #845301)
 	NOTE: http://www.talosintelligence.com/reports/TALOS-2016-0178/
+	NOTE: Fixed by: https://bitbucket.hdfgroup.org/projects/HDFFV/repos/hdf5/commits/e1d50d498a0affbbd6e088b524fd495ea95dea88
 CVE-2016-4331 (When decoding data out of a dataset encoded with the H5Z_NBIT ...)
 	- hdf5 <unfixed> (bug #845301)
 	NOTE: http://www.talosintelligence.com/reports/TALOS-2016-0177/




More information about the Secure-testing-commits mailing list