[Secure-testing-commits] r54843 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Fri Aug 18 09:25:11 UTC 2017


Author: carnil
Date: 2017-08-18 09:25:11 +0000 (Fri, 18 Aug 2017)
New Revision: 54843

Modified:
   data/CVE/list
Log:
Add CVE-2017-12933

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-08-18 09:23:48 UTC (rev 54842)
+++ data/CVE/list	2017-08-18 09:25:11 UTC (rev 54843)
@@ -5,7 +5,11 @@
 	NOTE: Fixed in 7.1.7, 7.0.21
 	NOTE: PHP Bug: https://bugs.php.net/bug.php?id=74101
 CVE-2017-12933 (The finish_nested_data function in ext/standard/var_unserializer.re in ...)
-	TODO: check
+	- php7.1 7.1.8-1
+	- php7.0 7.0.22-1
+	- php5 <removed>
+	NOTE: Fixed in 7.1.7l, 7.0.21, 5.6.31
+	NOTE: PHP Bug: https://bugs.php.net/bug.php?id=74111
 CVE-2017-12932 (ext/standard/var_unserializer.re in PHP 7.0.x through 7.0.22 and 7.1.x ...)
 	TODO: check
 CVE-2017-12931




More information about the Secure-testing-commits mailing list