[Secure-testing-commits] r48042 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Sat Jan 14 15:38:53 UTC 2017


Author: carnil
Date: 2017-01-14 15:38:52 +0000 (Sat, 14 Jan 2017)
New Revision: 48042

Modified:
   data/CVE/list
Log:
Update status for CVE-2016-10128/libgit2

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-01-14 15:33:13 UTC (rev 48041)
+++ data/CVE/list	2017-01-14 15:38:52 UTC (rev 48042)
@@ -354,10 +354,11 @@
 	RESERVED
 	- libgit2 <unfixed>
 	NOTE: https://github.com/libgit2/libgit2/commit/2fdef641fd0dd2828bd948234ae86de75221a11a
-CVE-2016-10128
+CVE-2016-10128 [smart_pkt: verify packet length exceeds PKT_LEN_SIZE]
 	RESERVED
 	- libgit2 <unfixed>
-	NOTE: https://github.com/libgit2/libgit2/commit/66e3774d279672ee51c3b54545a79d20d1ada834
+	NOTE: https://github.com/libgit2/libgit2/commit/66e3774d279672ee51c3b54545a79d20d1ada834 (v0.25.1)
+	NOTE: https://github.com/libgit2/libgit2/commit/4ac39c76c0153d1ee6889a0984c39e97731684b2 (v0.24.6)
 CVE-2016-10126 (Splunk Web in Splunk Enterprise 5.0.x before 5.0.17, 6.0.x before ...)
 	NOT-FOR-US: Splunk
 CVE-2016-10125 (D-Link DGS-1100 devices with Rev.B firmware 1.01.018 have a hardcoded ...)




More information about the Secure-testing-commits mailing list