[Secure-testing-commits] r53705 - data/CVE

Moritz Muehlenhoff jmm at moszumanska.debian.org
Thu Jul 20 12:08:00 UTC 2017


Author: jmm
Date: 2017-07-20 12:08:00 +0000 (Thu, 20 Jul 2017)
New Revision: 53705

Modified:
   data/CVE/list
Log:
new ruby issue, n/a


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-07-20 09:17:13 UTC (rev 53704)
+++ data/CVE/list	2017-07-20 12:08:00 UTC (rev 53705)
@@ -19,7 +19,8 @@
 CVE-2017-11467 (OrientDB through 2.2.22 does not enforce privilege requirements during ...)
 	NOT-FOR-US: OrientDB
 CVE-2017-11465 (The parser_yyerror function in the UTF-8 parser in Ruby 2.4.1 allows ...)
-	TODO: check
+	- ruby2.3 <not-affected> (Specific to Ruby 2.4)
+	- ruby2.1 <not-affected> (Specific to Ruby 2.4)
 CVE-2017-11464 (A SIGFPE is raised in the function box_blur_line of rsvg-filter.c in ...)
 	TODO: check
 CVE-2017-11473 (Buffer overflow in the mp_override_legacy_irq() function in ...)




More information about the Secure-testing-commits mailing list