[Secure-testing-commits] r49422 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Sun Mar 5 20:57:07 UTC 2017


Author: carnil
Date: 2017-03-05 20:57:07 +0000 (Sun, 05 Mar 2017)
New Revision: 49422

Modified:
   data/CVE/list
Log:
Add bugs for kio, kde4libs: #856889, #856890

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-03-05 20:22:07 UTC (rev 49421)
+++ data/CVE/list	2017-03-05 20:57:07 UTC (rev 49422)
@@ -297,10 +297,11 @@
 CVE-2017-6411
 	RESERVED
 CVE-2017-6410 (kpac/script.cpp in KDE kio before 5.32 and kdelibs before 4.14.30 calls ...)
-	- kio <unfixed>
-	- kde4libs <unfixed>
-	NOTE:  https://www.kde.org/info/security/advisory-20170228-1.txt
-	TODO: check
+	- kio <unfixed> (bug #856889)
+	- kde4libs <unfixed> (bug #856890)
+	NOTE: https://www.kde.org/info/security/advisory-20170228-1.txt
+	NOTE: Patch for kio: https://commits.kde.org/kio/f9d0cb47cf94e209f6171ac0e8d774e68156a6e4
+	NOTE: Patch for kde4libs: https://commits.kde.org/kdelibs/1804c2fde7bf4e432c6cf5bb8cce5701c7010559
 CVE-2017-6409 (An issue was discovered in Veritas NetBackup 8.0 and earlier and ...)
 	NOT-FOR-US: Veritas NetBackup
 CVE-2017-6408 (An issue was discovered in Veritas NetBackup 8.0 and earlier and ...)




More information about the Secure-testing-commits mailing list