[Secure-testing-commits] r54089 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Sun Jul 30 18:36:44 UTC 2017


Author: carnil
Date: 2017-07-30 18:36:44 +0000 (Sun, 30 Jul 2017)
New Revision: 54089

Modified:
   data/CVE/list
Log:
Update status for CVE-2017-11410/wireshark

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-07-30 18:32:33 UTC (rev 54088)
+++ data/CVE/list	2017-07-30 18:36:44 UTC (rev 54089)
@@ -917,6 +917,8 @@
 	NOTE: https://www.wireshark.org/security/wnpa-sec-2017-28.html
 CVE-2017-11410 (In Wireshark through 2.0.13 and 2.2.x through 2.2.7, the WBXML ...)
 	- wireshark <unfixed>
+	[jessie] - wireshark <not-affected> (Incomplete fix for CVE-2017-7702 not applied)
+	[wheezy] - wireshark <not-affected> (Incomplete fix for CVE-2017-7702 not applied)
 	NOTE: https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=13796
 	NOTE: https://code.wireshark.org/review/gitweb?p=wireshark.git;a=commit;h=3c7168cc5f044b4da8747d35da0b2b204dabf398
 	NOTE: https://www.wireshark.org/security/wnpa-sec-2017-13.html
@@ -11395,6 +11397,9 @@
 	NOTE: https://www.wireshark.org/security/wnpa-sec-2017-13.html
 	NOTE: https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=13477
 	NOTE: https://code.wireshark.org/review/gitweb?p=wireshark.git;a=commit;h=2f322f66cbcca2fefdaa630494f9d6c97eb659b7
+	NOTE: When for older releases fixing this entry, make sure to fix apply the
+	NOTE: complete patch including https://code.wireshark.org/review/gitweb?p=wireshark.git;a=commit;h=2f322f66cbcca2fefdaa630494f9d6c97eb659b7
+	NOTE: to not open CVE-2017-11410.
 CVE-2017-7701 (In Wireshark 2.2.0 to 2.2.5 and 2.0.0 to 2.0.11, the BGP dissector ...)
 	- wireshark 2.2.6+g32dac6a-1
 	[jessie] - wireshark <not-affected> (Vulnerable code not present)




More information about the Secure-testing-commits mailing list