[Secure-testing-commits] r45066 - data/CVE

Nicholas Luedtke nluedtke-guest at moszumanska.debian.org
Wed Oct 5 16:29:14 UTC 2016


Author: nluedtke-guest
Date: 2016-10-05 16:29:14 +0000 (Wed, 05 Oct 2016)
New Revision: 45066

Modified:
   data/CVE/list
Log:
Add CVE-2016-7902

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2016-10-05 16:01:59 UTC (rev 45065)
+++ data/CVE/list	2016-10-05 16:29:14 UTC (rev 45066)
@@ -1774,8 +1774,10 @@
 	RESERVED
 CVE-2016-7903
 	RESERVED
-CVE-2016-7902
+CVE-2016-7902 [fileUnzip->unzip() method not properly verifying the extension of files in zip archive.]
 	RESERVED
+	- dotclear <removed>
+	NOTE: Fixed by: https://hg.dotclear.org/dotclear/rev/a9db771a5a70
 CVE-2016-7901
 	RESERVED
 CVE-2016-7900




More information about the Secure-testing-commits mailing list