[Secure-testing-commits] r54936 - data/CVE

Moritz Muehlenhoff jmm at moszumanska.debian.org
Mon Aug 21 13:35:38 UTC 2017


Author: jmm
Date: 2017-08-21 13:35:38 +0000 (Mon, 21 Aug 2017)
New Revision: 54936

Modified:
   data/CVE/list
Log:
unrar-nonfree fixed in sid


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-08-21 11:33:35 UTC (rev 54935)
+++ data/CVE/list	2017-08-21 13:35:38 UTC (rev 54936)
@@ -157,25 +157,25 @@
 CVE-2017-12939 (A Remote Code Execution vulnerability was identified in all Windows ...)
 	NOT-FOR-US: Unity Editor
 CVE-2017-12942 (libunrar.a in UnRAR before 5.5.7 has a buffer overflow in the ...)
-	- unrar-nonfree <unfixed>
+	- unrar-nonfree 1:5.5.8-1
 	[stretch] - unrar-nonfree <no-dsa> (Non-free not supported)
 	[jessie] - unrar-nonfree <no-dsa> (Non-free not supported)
 	[wheezy] - unrar-nonfree <no-dsa> (Non-free not supported)
 	NOTE: http://www.openwall.com/lists/oss-security/2017/08/18/6
 CVE-2017-12941 (libunrar.a in UnRAR before 5.5.7 has an out-of-bounds read in the ...)
-	- unrar-nonfree <unfixed>
+	- unrar-nonfree 1:5.5.8-1
 	[stretch] - unrar-nonfree <no-dsa> (Non-free not supported)
 	[jessie] - unrar-nonfree <no-dsa> (Non-free not supported)
 	[wheezy] - unrar-nonfree <no-dsa> (Non-free not supported)
 	NOTE: http://www.openwall.com/lists/oss-security/2017/08/18/6
 CVE-2017-12940 (libunrar.a in UnRAR before 5.5.7 has an out-of-bounds read in the ...)
-	- unrar-nonfree <unfixed>
+	- unrar-nonfree 1:5.5.8-1
 	[stretch] - unrar-nonfree <no-dsa> (Non-free not supported)
 	[jessie] - unrar-nonfree <no-dsa> (Non-free not supported)
 	[wheezy] - unrar-nonfree <no-dsa> (Non-free not supported)
 	NOTE: http://www.openwall.com/lists/oss-security/2017/08/18/6
 CVE-2017-12938 (UnRAR before 5.5.7 allows remote attackers to bypass a ...)
-	- unrar-nonfree <unfixed>
+	- unrar-nonfree 1:5.5.8-1
 	[stretch] - unrar-nonfree <no-dsa> (Non-free not supported)
 	[jessie] - unrar-nonfree <no-dsa> (Non-free not supported)
 	[wheezy] - unrar-nonfree <no-dsa> (Non-free not supported)




More information about the Secure-testing-commits mailing list