[Secure-testing-commits] r50646 - data/CVE
Salvatore Bonaccorso
carnil at moszumanska.debian.org
Fri Apr 14 09:30:40 UTC 2017
Author: carnil
Date: 2017-04-14 09:30:39 +0000 (Fri, 14 Apr 2017)
New Revision: 50646
Modified:
data/CVE/list
Log:
Add three items which affect gnutls26 as well
Modified: data/CVE/list
===================================================================
--- data/CVE/list 2017-04-14 09:10:12 UTC (rev 50645)
+++ data/CVE/list 2017-04-14 09:30:39 UTC (rev 50646)
@@ -7948,16 +7948,19 @@
CVE-2017-5337 (Multiple heap-based buffer overflows in the read_attribute function in ...)
- gnutls28 3.5.8-1
[jessie] - gnutls28 <no-dsa> (Minor issue, will be fixed via point update)
+ - gnutls26 <removed>
NOTE: https://gnutls.org/security.html#GNUTLS-SA-2017-2
NOTE: https://gitlab.com/gnutls/gnutls/commit/94fcf1645ea17223237aaf8d19132e004afddc1a
CVE-2017-5336 (Stack-based buffer overflow in the cdk_pk_get_keyid function in ...)
- gnutls28 3.5.8-1
[jessie] - gnutls28 <no-dsa> (Minor issue, will be fixed via point update)
+ - gnutls26 <removed>
NOTE: https://gnutls.org/security.html#GNUTLS-SA-2017-2
NOTE: https://gitlab.com/gnutls/gnutls/commit/5140422e0d7319a8e2fe07f02cbcafc4d6538732
CVE-2017-5335 (The stream reading functions in lib/opencdk/read-packet.c in GnuTLS ...)
- gnutls28 3.5.8-1
[jessie] - gnutls28 <no-dsa> (Minor issue, will be fixed via point update)
+ - gnutls26 <removed>
NOTE: https://gnutls.org/security.html#GNUTLS-SA-2017-2
NOTE: https://gitlab.com/gnutls/gnutls/commit/49be4f7b82eba2363bb8d4090950dad976a77a3a
CVE-2017-5334 (Double free vulnerability in the gnutls_x509_ext_import_proxy function ...)
More information about the Secure-testing-commits
mailing list