[Secure-testing-commits] r58791 - data/CVE
Salvatore Bonaccorso
carnil at moszumanska.debian.org
Thu Dec 21 12:38:11 UTC 2017
Author: carnil
Date: 2017-12-21 12:38:11 +0000 (Thu, 21 Dec 2017)
New Revision: 58791
Modified:
data/CVE/list
Log:
Convert brackets for temporary descripion
Assuming the CVEs are not subitted to MITRE. On automatic update we
would otherwise loose the description since it was not used the brackets
for temprary descrpitions.
Modified: data/CVE/list
===================================================================
--- data/CVE/list 2017-12-21 12:31:26 UTC (rev 58790)
+++ data/CVE/list 2017-12-21 12:38:11 UTC (rev 58791)
@@ -27626,7 +27626,7 @@
RESERVED
CVE-2017-10909
RESERVED
-CVE-2017-10908 (h2o 2.2.x: crash when handling malformed HTTP/2 request)
+CVE-2017-10908 [h2o 2.2.x: crash when handling malformed HTTP/2 request]
- h2o 2.2.4+dfsg-1 (medium)
NOTE: fixed in 2.2.4
NOTE: https://github.com/h2o/h2o/issues/1544
@@ -27700,7 +27700,7 @@
NOT-FOR-US: PWR-Q200
CVE-2017-10873 (OpenAM (Open Source Edition) allows an attacker to bypass ...)
NOT-FOR-US: OpenAM
-CVE-2017-10872 (h2o: 2.2.x: crash when logging TLS 1.3 properties in h2o)
+CVE-2017-10872 [h2o: 2.2.x: crash when logging TLS 1.3 properties in h2o]
- h2o 2.2.4+dfsg-1 (medium)
NOTE: Fixed in 2.2.4
NOTE: https://github.com/h2o/h2o/issues/1543
@@ -27708,11 +27708,11 @@
NOT-FOR-US: NTT DOCOMO Wi-Fi STATION L-02F Software
CVE-2017-10870 (Memory corruption vulnerability in Rakuraku Hagaki (Rakuraku Hagaki ...)
NOT-FOR-US: Rakuraku Hagaki
-CVE-2017-10869 (h2o 2.2.x: stack overflow when sending huge request body to upstream)
+CVE-2017-10869 [h2o 2.2.x: stack overflow when sending huge request body to upstream]
- h2o 2.2.3+dfsg-1 (medium)
NOTE: Fixed in 2.2.3
NOTE: https://github.com/h2o/h2o/issues/1460
-CVE-2017-10868 (h2o 2.2.x: crash when receiving HTTP/1 request with invalid framing)
+CVE-2017-10868 [h2o 2.2.x: crash when receiving HTTP/1 request with invalid framing]
- h2o 2.2.3+dfsg-1 (medium)
NOTE: Fixed in 2.2.3
NOTE: https://github.com/h2o/h2o/issues/1459
More information about the Secure-testing-commits
mailing list