[Secure-testing-commits] r47838 - data/CVE

Moritz Muehlenhoff jmm at moszumanska.debian.org
Mon Jan 9 01:53:42 UTC 2017


Author: jmm
Date: 2017-01-09 01:53:42 +0000 (Mon, 09 Jan 2017)
New Revision: 47838

Modified:
   data/CVE/list
Log:
icoutils CVEfied


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-01-08 22:24:56 UTC (rev 47837)
+++ data/CVE/list	2017-01-09 01:53:42 UTC (rev 47838)
@@ -501,10 +501,10 @@
 CVE-2016-10099 (Borg (aka BorgBackup) before 1.0.9 has a flaw in the cryptographic ...)
 	- borgbackup 1.0.9-1
 	NOTE: https://borgbackup.readthedocs.io/en/stable/changes.html#pre-1-0-9-manifest-spoofing-vulnerability
-CVE-2017-XXXX [wrestool: exploitable crash]
+CVE-2017-5208 [wrestool: exploitable crash]
 	- icoutils 0.31.0-4 (bug #850017)
 	NOTE: https://anonscm.debian.org/git/users/cjwatson/icoutils.git/plain/debian/patches/check-offset-overflow.patch
-	NOTE: CVE Request: http://www.openwall.com/lists/oss-security/2017/01/08/1
+	NOTE: http://www.openwall.com/lists/oss-security/2017/01/08/1
 CVE-2016-XXXX [Use of uninitialized memory in unserialize()]
 	- php7.0 <unfixed> (bug #850158)
 	- php5 <unfixed>




More information about the Secure-testing-commits mailing list