[Secure-testing-commits] r53595 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Tue Jul 18 04:30:56 UTC 2017


Author: carnil
Date: 2017-07-18 04:30:56 +0000 (Tue, 18 Jul 2017)
New Revision: 53595

Modified:
   data/CVE/list
Log:
Remove one temporary PHP entry, this was already CVE-2017-11145

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-07-18 03:39:29 UTC (rev 53594)
+++ data/CVE/list	2017-07-18 04:30:56 UTC (rev 53595)
@@ -655,8 +655,6 @@
 	NOTE: When fixing this CVE make sure to make the fix complete, as per
 	NOTE: https://marc.info/?l=oss-security&m=149969403317810&w=2 to not
 	NOTE: open CVE-2017-11146.
-	NOTE: PHP Bug: https://bugs.php.net/bug.php?id=74819
-	NOTE: https://gist.github.com/anonymous/bd77ac90d3bdf31ce2a5251ad92e9e75
 	NOTE: http://openwall.com/lists/oss-security/2017/07/10/6
 CVE-2017-1000362 (The re-key admin monitor was introduced in Jenkins 1.498 and ...)
 	- jenkins <removed>
@@ -1319,14 +1317,6 @@
 	NOTE: Fixed in 7.1.0, 7.0.13, 5.6.28
 	NOTE: http://git.php.net/?p=php-src.git;a=commitdiff;h=b061fa909de77085d3822a89ab901b934d0362c4
 	NOTE: http://openwall.com/lists/oss-security/2017/07/10/6
-CVE-2017-XXXX [wddx_deserialize() heap out-of-bound read via php_parse_date()]
-	- php7.1 <unfixed>
-	- php7.0 <unfixed>
-	- php5 <removed>
-	NOTE: PHP Bug: https://bugs.php.net/bug.php?id=74819
-	NOTE: Fixed in 7.0.21
-	NOTE: http://git.php.net/?p=php-src.git;a=commitdiff;h=2aae60461c2ff7b7fbcdd194c789ac841d0747d7 (5.6.x)
-	NOTE: http://git.php.net/?p=php-src.git;a=commitdiff;h=6b18d956de38ecd8913c3d82ce96eb0368a1f9e5 (7.0.x)
 CVE-2017-11144 (In PHP before 5.6.31, 7.x before 7.0.21, and 7.1.x before 7.1.7, the ...)
 	- php7.1 <unfixed>
 	- php7.0 <unfixed>




More information about the Secure-testing-commits mailing list