[Secure-testing-commits] r53174 - data/CVE

Felix Geyer fgeyer at moszumanska.debian.org
Tue Jul 4 21:39:32 UTC 2017


Author: fgeyer
Date: 2017-07-04 21:39:32 +0000 (Tue, 04 Jul 2017)
New Revision: 53174

Modified:
   data/CVE/list
Log:
CVE-2012-6706 also affects libclamunrar

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-07-04 21:37:21 UTC (rev 53173)
+++ data/CVE/list	2017-07-04 21:39:32 UTC (rev 53174)
@@ -2414,8 +2414,12 @@
 	- unrar-nonfree 1:5.5.5-1 (bug #865461)
 	[stretch] - unrar-nonfree <no-dsa> (Non-free not supported)
 	[jessie] - unrar-nonfree <no-dsa> (Non-free not supported)
+	- libclamunrar <unfixed> (bug #867223)
+	[stretch] - libclamunrar <no-dsa> (Non-free not supported)
+	[jessie] - libclamunrar <no-dsa> (Non-free not supported)
 	NOTE: http://www.openwall.com/lists/oss-security/2017/06/21/9
 	NOTE: https://bugs.chromium.org/p/project-zero/issues/detail?id=1286&desc=6
+	NOTE: https://github.com/vrtadmin/clamav-devel/commit/d4699442bce76574573dc564e7f2177d679b88bd
 CVE-2017-9778 (GNU Debugger (GDB) 8.0 and earlier fails to detect a negative length ...)
 	- gdb <unfixed> (unimportant; bug #865607)
 	NOTE: https://sourceware.org/bugzilla/show_bug.cgi?id=21600




More information about the Secure-testing-commits mailing list