[Secure-testing-commits] r52967 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Wed Jun 28 05:03:57 UTC 2017


Author: carnil
Date: 2017-06-28 05:03:56 +0000 (Wed, 28 Jun 2017)
New Revision: 52967

Modified:
   data/CVE/list
Log:
Add CVE-2017-9841/phpunit

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-06-28 05:03:42 UTC (rev 52966)
+++ data/CVE/list	2017-06-28 05:03:56 UTC (rev 52967)
@@ -317,7 +317,9 @@
 CVE-2017-9842
 	RESERVED
 CVE-2017-9841 (Util/PHP/eval-stdin.php in PHPUnit before 4.8.28 and 5.x before 5.6.3 ...)
-	TODO: check
+	- phpunit <unfixed>
+	NOTE: https://github.com/sebastianbergmann/phpunit/pull/1956
+	NOTE: https://github.com/sebastianbergmann/phpunit/commit/284a69fb88a2d0845d23f42974a583d8f59bf5a5
 CVE-2017-9840 (Dolibarr ERP/CRM 5.0.3 and prior allows low-privilege users to upload ...)
 	- dolibarr <unfixed>
 CVE-2017-9839




More information about the Secure-testing-commits mailing list