[Secure-testing-commits] r47680 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Tue Jan 3 06:00:29 UTC 2017


Author: carnil
Date: 2017-01-03 06:00:29 +0000 (Tue, 03 Jan 2017)
New Revision: 47680

Modified:
   data/CVE/list
Log:
Add two libvncserver issues

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-01-02 23:41:14 UTC (rev 47679)
+++ data/CVE/list	2017-01-03 06:00:29 UTC (rev 47680)
@@ -2994,9 +2994,13 @@
 CVE-2016-9943
 	RESERVED
 CVE-2016-9942 (Heap-based buffer overflow in ultra.c in LibVNCClient in LibVNCServer ...)
-	TODO: check
+	- libvncserver <unfixed>
+	NOTE: https://github.com/LibVNC/libvncserver/pull/137
+	NOTE: https://github.com/LibVNC/libvncserver/pull/137/commits/5fff4353f66427b467eb29e5fdc1da4f2be028bb
 CVE-2016-9941 (Heap-based buffer overflow in rfbproto.c in LibVNCClient in ...)
-	TODO: check
+	- libvncserver <unfixed>
+	NOTE: https://github.com/LibVNC/libvncserver/pull/137
+	NOTE: https://github.com/LibVNC/libvncserver/pull/137/commits/5418e8007c248bf9668d22a8c1fa9528149b69f2
 CVE-2016-9940
 	RESERVED
 CVE-2016-9955 [Incorrect signature verification]




More information about the Secure-testing-commits mailing list