[Secure-testing-commits] r58902 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Sun Dec 24 16:18:09 UTC 2017


Author: carnil
Date: 2017-12-24 16:18:09 +0000 (Sun, 24 Dec 2017)
New Revision: 58902

Modified:
   data/CVE/list
Log:
CVE-2017-17405/ruby2.5 adressed in unstable

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-12-24 16:13:22 UTC (rev 58901)
+++ data/CVE/list	2017-12-24 16:18:09 UTC (rev 58902)
@@ -6314,7 +6314,7 @@
 CVE-2017-17406
 	RESERVED
 CVE-2017-17405 (Ruby before 2.4.3 allows Net::FTP command injection. Net::FTP#get, ...)
-	- ruby2.5 <unfixed> (bug #884437)
+	- ruby2.5 2.5.0~rc1-1 (bug #884437)
 	- ruby2.3 2.3.6-1 (bug #884438)
 	[stretch] - ruby2.3 <postponed> (Minor issue, can be fixed along in a future update)
 	- ruby2.1 <removed>




More information about the Secure-testing-commits mailing list