[Secure-testing-commits] r54464 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Wed Aug 9 06:55:58 UTC 2017


Author: carnil
Date: 2017-08-09 06:55:58 +0000 (Wed, 09 Aug 2017)
New Revision: 54464

Modified:
   data/CVE/list
Log:
Add CVE-2017-1000099

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-08-09 06:51:05 UTC (rev 54463)
+++ data/CVE/list	2017-08-09 06:55:58 UTC (rev 54464)
@@ -6,6 +6,11 @@
 	- curl <unfixed>
 	NOTE: https://curl.haxx.se/docs/adv_20170809B.html
 	NOTE: https://curl.haxx.se/CVE-2017-1000100.patch
+CVE-2017-1000099 [FILE buffer read out of bounds]
+	- curl <not-affected> (Only affects 7.54.1)
+	NOTE: https://curl.haxx.se/docs/adv_20170809C.html
+	NOTE: https://curl.haxx.se/CVE-2017-1000099.patch
+	NOTE: Introduced by: https://github.com/curl/curl/commit/7c312f84ea930d8
 CVE-2017-12693
 	RESERVED
 CVE-2017-12692




More information about the Secure-testing-commits mailing list