[Secure-testing-commits] r57322 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Sat Nov 4 21:13:28 UTC 2017


Author: carnil
Date: 2017-11-04 21:13:27 +0000 (Sat, 04 Nov 2017)
New Revision: 57322

Modified:
   data/CVE/list
Log:
Add reference for CVE-2017-0898

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-11-04 21:10:14 UTC (rev 57321)
+++ data/CVE/list	2017-11-04 21:13:27 UTC (rev 57322)
@@ -45061,6 +45061,7 @@
 	- ruby1.8 <removed>
 	NOTE: https://github.com/mruby/mruby/issues/3722
 	NOTE: https://www.ruby-lang.org/en/news/2017/09/14/sprintf-buffer-underrun-cve-2017-0898/
+	NOTE: https://bugs.ruby-lang.org/issues/13499
 CVE-2017-0897 (ExpressionEngine version 2.x < 2.11.8 and version 3.x < 3.5.5 create ...)
 	NOT-FOR-US: ExpressionEngine
 CVE-2017-0896 (Zulip Server 1.5.1 and below suffer from an error in the ...)




More information about the Secure-testing-commits mailing list