[Secure-testing-commits] r58314 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Thu Dec 7 08:29:28 UTC 2017


Author: carnil
Date: 2017-12-07 08:29:28 +0000 (Thu, 07 Dec 2017)
New Revision: 58314

Modified:
   data/CVE/list
Log:
Add patch for CVE-2017-17446/game-music-emu

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-12-07 07:33:21 UTC (rev 58313)
+++ data/CVE/list	2017-12-07 08:29:28 UTC (rev 58314)
@@ -215,6 +215,8 @@
 	[stretch] - game-music-emu <no-dsa> (Minor issue)
 	[jessie] - game-music-emu <no-dsa> (Minor issue)
 	NOTE: https://bitbucket.org/mpyne/game-music-emu/issues/14/addresssanitizer-negative-size-param-size
+	NOTE: Patch: https://bitbucket.org/mpyne/game-music-emu/commits/205290614cdc057541b26adeea05a9d45993f860
+	NOTE: Additional hardening: https://bitbucket.org/mpyne/game-music-emu/commits/4a441e94cba14268bc4e983d4dfd6ed112084d00
 CVE-2017-17440 (GNU Libextractor 1.6 allows remote attackers to cause a denial of ...)
 	- libextractor <unfixed> (bug #883528)
 	[stretch] - libextractor <no-dsa> (Minor issue)




More information about the Secure-testing-commits mailing list