[Secure-testing-commits] r55097 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Sat Aug 26 05:11:41 UTC 2017


Author: carnil
Date: 2017-08-26 05:11:41 +0000 (Sat, 26 Aug 2017)
New Revision: 55097

Modified:
   data/CVE/list
Log:
Add new krb5 issue

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-08-26 05:01:31 UTC (rev 55096)
+++ data/CVE/list	2017-08-26 05:11:41 UTC (rev 55097)
@@ -17222,8 +17222,13 @@
 	- ming <removed>
 	NOTE: http://www.openwall.com/lists/oss-security/2017/04/07/1
 	NOTE: https://github.com/libming/libming/issues/68
-CVE-2017-7562
+CVE-2017-7562 [Make certauth eku module restrictive-only]
 	RESERVED
+	- krb5 <unfixed>
+	NOTE: https://github.com/krb5/krb5/pull/694
+	NOTE: https://github.com/krb5/krb5/pull/694/commits/50fe4074f188c2d4da0c421e96553acea8378db2
+	NOTE: https://github.com/krb5/krb5/pull/694/commits/1de6ca2f2eb1fdbab51f1549a25a6903aefcc196
+	NOTE: https://github.com/krb5/krb5/pull/694/commits/b7af544e50a4d8291524f590e20dd44430bf627d
 CVE-2017-7561 [Vary header not added by CORS filter leading to cache poisoning]
 	RESERVED
 	- resteasy <unfixed>




More information about the Secure-testing-commits mailing list