[Secure-testing-commits] r49489 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Tue Mar 7 19:50:20 UTC 2017


Author: carnil
Date: 2017-03-07 19:50:20 +0000 (Tue, 07 Mar 2017)
New Revision: 49489

Modified:
   data/CVE/list
Log:
Add CVE-2017-6508/wget

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-03-07 19:33:38 UTC (rev 49488)
+++ data/CVE/list	2017-03-07 19:50:20 UTC (rev 49489)
@@ -27,6 +27,10 @@
 	[wheezy] - wordpress <not-affected> (Only affects 4.2 and later)
 	NOTE: https://wordpress.org/news/2017/03/wordpress-4-7-3-security-and-maintenance-release/
 	NOTE: https://github.com/WordPress/WordPress/commit/263831a72d08556bc2f3a328673d95301a152829
+CVE-2017-6508 [CRLF injection in the url_parse function in url.c]
+	- wget <unfixed>
+	NOTE: http://lists.gnu.org/archive/html/bug-wget/2017-03/msg00018.html
+	NOTE: http://git.savannah.gnu.org/cgit/wget.git/commit/?id=4d729e322fae359a1aefaafec1144764a54e8ad4
 CVE-2017-6506
 	RESERVED
 CVE-2017-6505 [usb: an infinite loop issue in ohci_service_ed_list]




More information about the Secure-testing-commits mailing list