[Secure-testing-commits] r53562 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Mon Jul 17 07:43:21 UTC 2017


Author: carnil
Date: 2017-07-17 07:43:20 +0000 (Mon, 17 Jul 2017)
New Revision: 53562

Modified:
   data/CVE/list
Log:
Add CVE-2017-11343/chicken

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-07-17 04:29:24 UTC (rev 53561)
+++ data/CVE/list	2017-07-17 07:43:20 UTC (rev 53562)
@@ -1,6 +1,9 @@
 CVE-2017-11353 [race condition allows access to ssh and pgp keys]
 	- yadm <unfixed> (bug #868300)
 	NOTE: https://github.com/TheLocehiliosan/yadm/issues/74
+CVE-2017-11343 [algorithmic complexity attack in hash tables]
+	- chicken <unfixed>
+	NOTE: http://lists.nongnu.org/archive/html/chicken-announce/2017-07/msg00000.html
 CVE-2017-11342 (There is an illegal address access in ast.cpp of LibSass 3.4.5. A ...)
 	- libsass <unfixed> (bug #868577)
 	[stretch] - libsass <no-dsa> (Minor issue)




More information about the Secure-testing-commits mailing list