[Secure-testing-commits] r51662 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Mon May 15 20:13:15 UTC 2017


Author: carnil
Date: 2017-05-15 20:13:15 +0000 (Mon, 15 May 2017)
New Revision: 51662

Modified:
   data/CVE/list
Log:
Add information for CVE-2017-8929

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-05-15 20:13:03 UTC (rev 51661)
+++ data/CVE/list	2017-05-15 20:13:15 UTC (rev 51662)
@@ -8,6 +8,8 @@
 	NOT-FOR-US: Simple Invoices
 CVE-2017-8929 (The sized_string_cmp function in libyara/sizedstr.c in YARA 3.5.0 ...)
 	- yara <unfixed>
+	NOTE: https://github.com/VirusTotal/yara/issues/658
+	NOTE: https://github.com/VirusTotal/yara/commit/053e67e3ec81cc9268ce30eaf0d6663d8639ed1e
 CVE-2017-8928 (mailcow 0.14, as used in "mailcow: dockerized" and other products, has ...)
 	TODO: check
 CVE-2017-XXXX [deluge-webui: directory traversal attack vulnerability]




More information about the Secure-testing-commits mailing list