[Secure-testing-commits] r49561 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Fri Mar 10 12:01:38 UTC 2017


Author: carnil
Date: 2017-03-10 12:01:37 +0000 (Fri, 10 Mar 2017)
New Revision: 49561

Modified:
   data/CVE/list
Log:
Add three new libytnef CVEs

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-03-10 09:32:34 UTC (rev 49560)
+++ data/CVE/list	2017-03-10 12:01:37 UTC (rev 49561)
@@ -1,3 +1,9 @@
+CVE-2017-6802 [Potential buffer overrun in compressed RTF streams]
+	- libytnef 1.9.2-1
+CVE-2017-6801 [Missing check for fields of size 0]
+	- libytnef 1.9.2-1
+CVE-2017-6800 [Invalid memory access (heap overrun) in handling LONG data types]
+	- libytnef 1.9.2-1
 CVE-2017-6797 (A cross-site scripting (XSS) vulnerability in ...)
 	- mantis <removed>
 	NOTE: https://github.com/mantisbt/mantisbt/commit/a2d90ecabf3bcf3aa22ed9dbbecfd3d37902956f




More information about the Secure-testing-commits mailing list