[Secure-testing-commits] r55268 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Wed Aug 30 20:49:08 UTC 2017


Author: carnil
Date: 2017-08-30 20:49:08 +0000 (Wed, 30 Aug 2017)
New Revision: 55268

Modified:
   data/CVE/list
Log:
Add CVE-2017-13685/sqlite3

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-08-30 20:47:33 UTC (rev 55267)
+++ data/CVE/list	2017-08-30 20:49:08 UTC (rev 55268)
@@ -348,7 +348,10 @@
 CVE-2016-1000245
 	RESERVED
 CVE-2017-13685 (The dump_callback function in SQLite 3.20.0 allows remote attackers to ...)
-	TODO: check
+	- sqlite3 <unfixed> (unimportant)
+	NOTE: https://sqlite.org/src/info/02f0f4c54f2819b3
+	NOTE: http://www.mail-archive.com/sqlite-users%40mailinglists.sqlite.org/msg105314.html
+	NOTE: Crash in the command-line shell program, not the the core SQLite library.
 CVE-2017-13684
 	RESERVED
 CVE-2017-13683




More information about the Secure-testing-commits mailing list