[Secure-testing-commits] r48335 - data/CVE
Salvatore Bonaccorso
carnil at moszumanska.debian.org
Tue Jan 24 17:02:10 UTC 2017
Author: carnil
Date: 2017-01-24 17:02:03 +0000 (Tue, 24 Jan 2017)
New Revision: 48335
Modified:
data/CVE/list
Log:
Triage CVE-2017-5576/linux, thanks Nicholas Luedtke for preliminary investigation
Modified: data/CVE/list
===================================================================
--- data/CVE/list 2017-01-24 16:46:03 UTC (rev 48334)
+++ data/CVE/list 2017-01-24 17:02:03 UTC (rev 48335)
@@ -11,6 +11,8 @@
NOTE: Introduced by: https://github.com/torvalds/linux/commit/d5b1a78a772f1e31a94f8babfa964152ec5e9aa5 (4.5-rc1)
CVE-2017-5576 [drm/vc4: Fix an integer overflow in temporary allocation layout]
- linux <unfixed>
+ [jessie] - linux <not-affected> (Vulnerable code introduced later)
+ [wheezy] - linux <not-affected> (Vulnerable code introduced later)
NOTE: https://lkml.org/lkml/2017/1/17/761
NOTE: Introduced by: https://github.com/torvalds/linux/commit/d5b1a78a772f1e31a94f8babfa964152ec5e9aa5 (4.5-rc1)
CVE-2017-5575 (SQL injection vulnerability in inc/lib/Options.class.php in GeniXCMS ...)
More information about the Secure-testing-commits
mailing list