[Secure-testing-commits] r53223 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Thu Jul 6 12:27:28 UTC 2017


Author: carnil
Date: 2017-07-06 12:27:28 +0000 (Thu, 06 Jul 2017)
New Revision: 53223

Modified:
   data/CVE/list
Log:
Add PHP entry for upstream bug #73773

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-07-06 12:24:42 UTC (rev 53222)
+++ data/CVE/list	2017-07-06 12:27:28 UTC (rev 53223)
@@ -1,3 +1,11 @@
+CVE-2017-XXXX [Seg fault when loading hostile phar]
+	- php7.1 7.1.1-1
+	- php7.0 7.0.15-1
+	- php5 <removed>
+	[jessie] - php5 5.6.30+dfsg-0+deb8u1
+	NOTE: PHP Bug: https://bugs.php.net/bug.php?id=73773
+	NOTE: Fixed in 7.1.1, 7.0.15, 5.6.30
+	NOTE: http://git.php.net/?p=php-src.git;a=commitdiff;h=e5246580a85f031e1a3b8064edbaa55c1643a451
 CVE-2017-XXXX [parse_url return wrong hostname]
 	- php7.1 <not-affected> (Fixed with initial upload to unstable)
 	- php7.0 7.0.13-1




More information about the Secure-testing-commits mailing list