[Secure-testing-commits] r46630 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Tue Nov 29 06:44:45 UTC 2016


Author: carnil
Date: 2016-11-29 06:44:45 +0000 (Tue, 29 Nov 2016)
New Revision: 46630

Modified:
   data/CVE/list
Log:
Add information for CVE-2014-9912

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2016-11-29 06:34:02 UTC (rev 46629)
+++ data/CVE/list	2016-11-29 06:44:45 UTC (rev 46630)
@@ -358,8 +358,15 @@
 	RESERVED
 CVE-2016-9482
 	RESERVED
-CVE-2014-9912
+CVE-2014-9912 [stack buffer overflow in locale_get_display_name]
 	RESERVED
+	- php5 5.6.0+dfsg-1
+	[wheezy] - php5 5.4.34-0+deb7u1
+	NOTE: Fixed in 5.6.0, 5.5.14, 5.4.30, 5.3.29
+	NOTE: PHP Bug: https://bugs.php.net/bug.php?id=67397
+	NOTE: Upstream patch: https://bugs.php.net/patch-display.php?bug_id=67397&patch=bug67397-patch&revision=latest
+	NOTE: PHP workaround for CVE-2014-9911 in icu
+	TODO: double-check first fixing version in unstable
 CVE-2016-4412 [phpMyAdmin PMASA-2016-57]
 	RESERVED
 	- phpmyadmin 4:4.1.7-1




More information about the Secure-testing-commits mailing list