[Secure-testing-commits] r53575 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Mon Jul 17 19:22:03 UTC 2017


Author: carnil
Date: 2017-07-17 19:22:03 +0000 (Mon, 17 Jul 2017)
New Revision: 53575

Modified:
   data/CVE/list
Log:
Add CVE-2017-10987

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-07-17 19:21:52 UTC (rev 53574)
+++ data/CVE/list	2017-07-17 19:22:03 UTC (rev 53575)
@@ -1140,8 +1140,13 @@
 	[wheezy] - freeradius <not-affected> (Only affects 3.x series)
 	NOTE: http://freeradius.org/security/fuzzer-2017.html#FR-GV-305
 	NOTE: https://github.com/FreeRADIUS/freeradius-server/commit/de3b3b2e4153db26442facbd5e9b268a3bf795ba
-CVE-2017-10987
+CVE-2017-10987 [DHCP - Buffer over-read in fr_dhcp_decode_suboptions()]
 	RESERVED
+	- freeradius <unfixed>
+	[jessie] - freeradius <not-affected> (Only affects 3.x series)
+	[wheezy] - freeradius <not-affected> (Only affects 3.x series)
+	NOTE: http://freeradius.org/security/fuzzer-2017.html#FR-GV-304
+	NOTE: https://github.com/FreeRADIUS/freeradius-server/commit/19a18bf7c8af649c9e9742fb6a046f6aff639866
 CVE-2017-10986
 	RESERVED
 CVE-2017-10985




More information about the Secure-testing-commits mailing list