[Secure-testing-commits] r52387 - data/CVE
Salvatore Bonaccorso
carnil at moszumanska.debian.org
Wed Jun 7 12:12:30 UTC 2017
Author: carnil
Date: 2017-06-07 12:12:30 +0000 (Wed, 07 Jun 2017)
New Revision: 52387
Modified:
data/CVE/list
Log:
Add CVE-2017-9470/libytnef
Modified: data/CVE/list
===================================================================
--- data/CVE/list 2017-06-07 12:12:17 UTC (rev 52386)
+++ data/CVE/list 2017-06-07 12:12:30 UTC (rev 52387)
@@ -63,7 +63,9 @@
NOTE: https://github.com/Yeraze/ytnef/issues/39
NOTE: https://blogs.gentoo.org/ago/2017/05/24/ytnef-heap-based-buffer-overflow-in-swapword-ytnef-c/
CVE-2017-9470 (In ytnef 1.9.2, the MAPIPrint function in lib/ytnef.c allows remote ...)
- TODO: check
+ - libytnef <unfixed>
+ NOTE: https://github.com/Yeraze/ytnef/issues/37
+ NOTE: https://blogs.gentoo.org/ago/2017/05/24/ytnef-null-pointer-dereference-in-mapiprint-ytnef-c/
CVE-2017-9469 (In Irssi before 1.0.3, when receiving certain incorrectly quoted DCC ...)
- irssi <unfixed>
NOTE: https://github.com/irssi/irssi/commit/fb08fc7f1aa6b2e616413d003bf021612301ad55
More information about the Secure-testing-commits
mailing list