[Secure-testing-commits] r51926 - data/CVE

Moritz Muehlenhoff jmm at moszumanska.debian.org
Wed May 24 10:40:02 UTC 2017


Author: jmm
Date: 2017-05-24 10:40:02 +0000 (Wed, 24 May 2017)
New Revision: 51926

Modified:
   data/CVE/list
Log:
new vlc issues


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-05-24 10:22:46 UTC (rev 51925)
+++ data/CVE/list	2017-05-24 10:40:02 UTC (rev 51926)
@@ -2258,13 +2258,17 @@
 	NOTE: http://blog.checkpoint.com/2017/05/23/hacked-in-translation/
 	NOTE: https://kodi.tv/article/kodi-v172-minor-bug-fix-and-security-release
 CVE-2017-8313 (Heap out-of-bound read in ParseJSS in VideoLAN VLC before 2.2.5 due to ...)
-	TODO: check
+	- vlc 2.2.5-1
+	NOTE: http://git.videolan.org/?p=vlc/vlc-2.2.git;a=commitdiff;h=05b653355ce303ada3b5e0e645ae717fea39186c
 CVE-2017-8312 (Heap out-of-bound read in ParseJSS in VideoLAN VLC due to missing ...)
-	TODO: check
+	- vlc <unfixed>
+	NOTE: http://git.videolan.org/?p=vlc.git;a=commitdiff;h=611398fc8d32f3fe4331f60b220c52ba3557beaa
 CVE-2017-8311 (Potential heap based buffer overflow in ParseJSS in VideoLAN VLC ...)
-	TODO: check
+	- vlc 2.2.5-1
+	NOTE: http://git.videolan.org/?p=vlc.git;a=commitdiff;h=775de716add17322f24b476439f903a829446eb6
 CVE-2017-8310 (Heap out-of-bound read in CreateHtmlSubtitle in VideoLAN VLC 2.2.x due ...)
-	TODO: check
+	- vlc 2.2.5.1-1
+	NOTE: http://git.videolan.org/?p=vlc/vlc-2.2.git;a=commit;h=7cac839692ab79dbfe5e4ebd4c4e37d9a8b1b328
 CVE-2017-8309 (Memory leak in the audio/audio.c in QEMU (aka Quick Emulator) allows ...)
 	- qemu 1:2.8+dfsg-5 (bug #862280)
 	[jessie] - qemu <no-dsa> (Minor issue)




More information about the Secure-testing-commits mailing list