[Secure-testing-commits] r53552 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Sun Jul 16 20:01:30 UTC 2017


Author: carnil
Date: 2017-07-16 20:01:30 +0000 (Sun, 16 Jul 2017)
New Revision: 53552

Modified:
   data/CVE/list
Log:
Add bug reference for ruby-mixlib-archive issue, #868572

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-07-16 17:36:17 UTC (rev 53551)
+++ data/CVE/list	2017-07-16 20:01:30 UTC (rev 53552)
@@ -638,7 +638,9 @@
 CVE-2017-1000027 (Koozali Foundation SME Server versions 8.x, 9.x, 10.x are vulnerable ...)
 	NOT-FOR-US: Koozali Foundation SME Server
 CVE-2017-1000026 (Chef Software's mixlib-archive versions 0.3.0 and older are vulnerable ...)
-	- ruby-mixlib-archive <unfixed>
+	- ruby-mixlib-archive <unfixed> (bug #868572)
+	NOTE: https://github.com/chef/mixlib-archive/pull/6
+	NOTE: https://github.com/chef/mixlib-archive/pull/6/commits/3a874a24aed6ee93fbccf97efe0ecc999bafe87d
 CVE-2017-1000025 (GNOME Web (Epiphany) 3.23 before 3.23.5, 3.22 before 3.22.6, 3.20 ...)
 	TODO: check
 CVE-2017-1000024 (Shotwell version 0.24.4 or earlier and 0.25.3 or earlier is vulnerable ...)




More information about the Secure-testing-commits mailing list