[Secure-testing-commits] r47780 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Fri Jan 6 11:17:59 UTC 2017


Author: carnil
Date: 2017-01-06 11:17:59 +0000 (Fri, 06 Jan 2017)
New Revision: 47780

Modified:
   data/CVE/list
Log:
Adjust description for CVE-2016-10117

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-01-06 09:33:17 UTC (rev 47779)
+++ data/CVE/list	2017-01-06 11:17:59 UTC (rev 47780)
@@ -139,10 +139,10 @@
 	- firejail <unfixed> (low)
 	NOTE: http://www.openwall.com/lists/oss-security/2017/01/05/4
 	NOTE: https://github.com/netblue30/firejail/commit/6144229605177764b7f3f3450c1a47f56595dc9e
-CVE-2016-10117 [firejail allows truncation of /etc/resolv.conf]
+CVE-2016-10117 [firejail allows unrestricted mount of tmpfs]
 	- firejail 0.9.38-1
 	NOTE: http://www.openwall.com/lists/oss-security/2017/01/05/4
-	NOTE: https://github.com/netblue30/firejail/commit/678cd1495457318dad39178bb646ba1b96332ddb
+	NOTE: https://github.com/netblue30/firejail/commit/678cd1495457318dad39178bb646ba1b96332ddb (0.9.38-rc1)
 CVE-2016-10116 (NETGEAR Arlo base stations with firmware 1.7.5_6178 and earlier, Arlo Q ...)
 	NOT-FOR-US: NETGEAR
 CVE-2016-10115 (NETGEAR Arlo base stations with firmware 1.7.5_6178 and earlier, Arlo Q ...)




More information about the Secure-testing-commits mailing list