[Secure-testing-commits] r55060 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Fri Aug 25 10:17:45 UTC 2017


Author: carnil
Date: 2017-08-25 10:17:45 +0000 (Fri, 25 Aug 2017)
New Revision: 55060

Modified:
   data/CVE/list
Log:
Add CVE-2017-13692/tidy-html5

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-08-25 09:32:07 UTC (rev 55059)
+++ data/CVE/list	2017-08-25 10:17:45 UTC (rev 55060)
@@ -8,7 +8,9 @@
 	- linux <unfixed>
 	NOTE: https://patchwork.kernel.org/patch/9919053/
 CVE-2017-13692 (In Tidy 5.5.31, the IsURLCodePoint function in attrs.c allows attackers ...)
-	TODO: check
+	- tidy-html5 <unfixed>
+	- tidy <removed>
+	NOTE: https://github.com/htacg/tidy-html5/issues/588
 CVE-2017-13691
 	RESERVED
 CVE-2017-13690




More information about the Secure-testing-commits mailing list