[Secure-testing-commits] r58570 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Thu Dec 14 11:26:47 UTC 2017


Author: carnil
Date: 2017-12-14 11:26:46 +0000 (Thu, 14 Dec 2017)
New Revision: 58570

Modified:
   data/CVE/list
Log:
Mark CVE-2017-17497 as not-affected

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-12-14 10:33:33 UTC (rev 58569)
+++ data/CVE/list	2017-12-14 11:26:46 UTC (rev 58570)
@@ -2536,7 +2536,7 @@
 	NOTE: http://hg.code.sf.net/p/graphicsmagick/code/rev/f1c418ef0260
 	NOTE: https://sourceforge.net/p/graphicsmagick/bugs/525/
 CVE-2017-17497 (In Tidy 5.7.0, the prvTidyTidyMetaCharset function in clean.c allows ...)
-	- tidy-html5 <unfixed>
+	- tidy-html5 <not-affected> (Vulnerable code introduced after 5.6.0)
 	- tidy <not-affected> (Vulnerable code not present)
 	NOTE: https://github.com/htacg/tidy-html5/issues/656
 CVE-2017-17496 (The socket_create function in socket.c in idevicerestore through ...)




More information about the Secure-testing-commits mailing list