[Secure-testing-commits] r46564 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Fri Nov 25 21:49:55 UTC 2016


Author: carnil
Date: 2016-11-25 21:49:55 +0000 (Fri, 25 Nov 2016)
New Revision: 46564

Modified:
   data/CVE/list
Log:
Update information for CVE-2016-5823

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2016-11-25 21:10:26 UTC (rev 46563)
+++ data/CVE/list	2016-11-25 21:49:55 UTC (rev 46564)
@@ -12695,11 +12695,10 @@
 	TODO: check
 CVE-2016-5823
 	RESERVED
-	- libical <unfixed>
+	- libical 1.0-1
 	[wheezy] - libical <no-dsa> (Only possible denial of service, not severe enough to solve)
 	NOTE: possibly correct upstream bug: https://bugzilla.mozilla.org/show_bug.cgi?id=1275787
-	NOTE: According to the original submitter this problem do not exist in "latest".
-	TODO: check
+	NOTE: Exact fixing commit unfortunately not bisected, need more investigation
 CVE-2016-5744 (Siemens SIMATIC WinCC 7.0 through SP3 and 7.2 allows remote attackers ...)
 	NOT-FOR-US: Siemens
 CVE-2016-5743 (Siemens SIMATIC WinCC before 7.3 Update 10 and 7.4 before Update 1, ...)




More information about the Secure-testing-commits mailing list