[Secure-testing-commits] r58630 - data/CVE
Salvatore Bonaccorso
carnil at moszumanska.debian.org
Sun Dec 17 08:12:53 UTC 2017
Author: carnil
Date: 2017-12-17 08:12:53 +0000 (Sun, 17 Dec 2017)
New Revision: 58630
Modified:
data/CVE/list
Log:
Sort entries by source package
Modified: data/CVE/list
===================================================================
--- data/CVE/list 2017-12-17 08:12:42 UTC (rev 58629)
+++ data/CVE/list 2017-12-17 08:12:53 UTC (rev 58630)
@@ -4929,10 +4929,10 @@
NOTE: https://sources.debian.org/src/nip2/8.4.0-1/src/boxes.c/?hl=727#L727
CVE-2017-17513 (TeX Live through 20170524 does not validate strings before launching ...)
- texlive-base <unfixed>
+ [wheezy] - texlive-base <not-affected> (Vulnerable code do not exist)
- texlive-bin <unfixed>
+ [wheezy] - texlive-bin <not-affected> (Vulnerable code do not exist)
- context <unfixed>
- [wheezy] - texlive-base <not-affected> (Vulnerable code do not exist)
- [wheezy] - texlive-bin <not-affected> (Vulnerable code do not exist)
[wheezy] - context <not-affected> (Vulnerable code do not exist)
NOTE: https://sources.debian.org/src/texlive-base/2017.20171128-1/texmf-dist/tex/luatex/lualibs/lualibs-os.lua/#L153
NOTE: https://sources.debian.org/src/texlive-bin/2016.20160513.41080.dfsg-2/texk/texlive/linked_scripts/context/stubs/unix/mtxrun/#L3004
More information about the Secure-testing-commits
mailing list