[Secure-testing-commits] r48333 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Tue Jan 24 16:38:30 UTC 2017


Author: carnil
Date: 2017-01-24 16:38:30 +0000 (Tue, 24 Jan 2017)
New Revision: 48333

Modified:
   data/CVE/list
Log:
Add CVE-2017-5495/quagga

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-01-24 16:02:52 UTC (rev 48332)
+++ data/CVE/list	2017-01-24 16:38:30 UTC (rev 48333)
@@ -267,8 +267,13 @@
 	RESERVED
 CVE-2017-5496
 	RESERVED
-CVE-2017-5495
+CVE-2017-5495 [Telnet interface input buffer allocates unbounded amounts of memory]
 	RESERVED
+	- quagga <unfixed>
+	NOTE: http://savannah.nongnu.org/forum/forum.php?forum_id=8783
+	NOTE: http://mirror.easyname.at/nongnu//quagga/quagga-1.1.1.changelog.txt
+	NOTE: Fixed by: http://git.savannah.gnu.org/cgit/quagga.git/commit/?id=b7ceefea77a246fe5c1dcd1b91bf6079d1b97c02
+	NOTE: http://git.savannah.gnu.org/cgit/quagga.git/commit/?id=7d66284a5817a1613b1e4d64a0775ec04fdf8c01
 CVE-2017-5494 (Multiple cross-site scripting (XSS) vulnerabilities in the file types ...)
 	- b2evolution <removed>
 CVE-2017-5486




More information about the Secure-testing-commits mailing list