[Secure-testing-commits] r54563 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Thu Aug 10 18:51:31 UTC 2017


Author: carnil
Date: 2017-08-10 18:51:31 +0000 (Thu, 10 Aug 2017)
New Revision: 54563

Modified:
   data/CVE/list
Log:
Reference advisory for subversion

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-08-10 18:49:17 UTC (rev 54562)
+++ data/CVE/list	2017-08-10 18:51:31 UTC (rev 54563)
@@ -6177,10 +6177,11 @@
 	RESERVED
 CVE-2017-9801 (When a call-site passes a subject for an email that contains ...)
 	NOT-FOR-US: Apache commons email
-CVE-2017-9800
+CVE-2017-9800 [Arbitrary code execution on clients through malicious svn+ssh URLs in svn:externals and svn:sync-from-url]
 	RESERVED
 	- subversion 1.9.7-1
 	NOTE: Fixed by: http://svn.apache.org/viewvc?view=revision&sortby=rev&revision=1804691
+	NOTE: http://subversion.apache.org/security/CVE-2017-9800-advisory.txt
 CVE-2017-9799 (It was found that under some situations and configurations of Apache ...)
 	NOT-FOR-US: Apache Storm
 CVE-2017-9798




More information about the Secure-testing-commits mailing list