[Secure-testing-commits] r53577 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Mon Jul 17 19:22:23 UTC 2017


Author: carnil
Date: 2017-07-17 19:22:23 +0000 (Mon, 17 Jul 2017)
New Revision: 53577

Modified:
   data/CVE/list
Log:
Add CVE-2017-10985

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-07-17 19:22:13 UTC (rev 53576)
+++ data/CVE/list	2017-07-17 19:22:23 UTC (rev 53577)
@@ -1154,8 +1154,13 @@
 	[wheezy] - freeradius <not-affected> (Only affects 3.x series)
 	NOTE: http://freeradius.org/security/fuzzer-2017.html#FR-GV-303
 	NOTE: https://github.com/FreeRADIUS/freeradius-server/commit/21e2e95751bfb54c0fb0328392d06671a75c191c
-CVE-2017-10985
+CVE-2017-10985 [Infinite loop and memory exhaustion with 'concat' attributes]
 	RESERVED
+	- freeradius <unfixed>
+	[jessie] - freeradius <not-affected> (Only affects 3.x series)
+	[wheezy] - freeradius <not-affected> (Only affects 3.x series)
+	NOTE: http://freeradius.org/security/fuzzer-2017.html#FR-GV-302
+	NOTE: https://github.com/FreeRADIUS/freeradius-server/commit/6726c16549b131ed39f6f8886cdf5d9d922a9a97
 CVE-2017-10984
 	RESERVED
 CVE-2017-10983




More information about the Secure-testing-commits mailing list