[Secure-testing-commits] r58648 - data/CVE

Aurelien Jarno aurel32 at moszumanska.debian.org
Sun Dec 17 17:41:48 UTC 2017


Author: aurel32
Date: 2017-12-17 17:41:48 +0000 (Sun, 17 Dec 2017)
New Revision: 58648

Modified:
   data/CVE/list
Log:
Add details about CVE-2017-16997

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-12-17 17:16:33 UTC (rev 58647)
+++ data/CVE/list	2017-12-17 17:41:48 UTC (rev 58648)
@@ -7922,8 +7922,10 @@
 	RESERVED
 CVE-2017-16998
 	RESERVED
-CVE-2017-16997
-	RESERVED
+CVE-2017-16997 (Incorrect handling of RPATH or RUNPATH containing $ORIGIN for ...)
+	- glibc 2.19-1
+	NOTE: Upstream bug: https://sourceware.org/bugzilla/show_bug.cgi?id=22625
+	NOTE: Proposed patch: https://sourceware.org/ml/libc-alpha/2017-12/msg00528.html
 CVE-2017-16996
 	RESERVED
 CVE-2017-16995




More information about the Secure-testing-commits mailing list