[Secure-testing-commits] r50714 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Mon Apr 17 06:17:25 UTC 2017


Author: carnil
Date: 2017-04-17 06:17:25 +0000 (Mon, 17 Apr 2017)
New Revision: 50714

Modified:
   data/CVE/list
Log:
Add notes for CVE-2016-5827

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-04-17 06:17:15 UTC (rev 50713)
+++ data/CVE/list	2017-04-17 06:17:25 UTC (rev 50714)
@@ -32998,8 +32998,13 @@
 	NOTE: Introduced in https://git.kernel.org/linus/bc2a9408fa65195288b41751016c36fd00a75a85 (v3.10-rc1)
 CVE-2016-5827 (The icaltime_from_string function in libical 0.47 and 1.0 allows ...)
 	- libical <unfixed>
+	[jessie] - libical <no-dsa> (Minor issue)
 	[wheezy] - libical <no-dsa> (Low prio according to upstream)
 	NOTE: https://bugzilla.mozilla.org/show_bug.cgi?id=1281043
+	NOTE: This issue fixed by the commits referenced via https://github.com/libical/libical/issues/251
+	NOTE: https://github.com/libical/libical/commit/38757abb495ea6cb40faa5418052278bf75040f7
+	NOTE: https://github.com/libical/libical/commit/04d84749e53db08c71ed0ce8b6ba5c11082743cd
+	NOTE: https://github.com/libical/libical/commit/830d9530817516377c2bc3b532798ce2c6b4765a
 CVE-2016-5826 (The parser_get_next_char function in libical 0.47 and 1.0 allows ...)
 	- libical <unfixed>
 	[wheezy] - libical <no-dsa> (Low prio according to upstream)




More information about the Secure-testing-commits mailing list