[Secure-testing-commits] r57459 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Wed Nov 8 19:40:28 UTC 2017


Author: carnil
Date: 2017-11-08 19:40:28 +0000 (Wed, 08 Nov 2017)
New Revision: 57459

Modified:
   data/CVE/list
Log:
Add issue in backintime, CVE-2017-16667

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-11-08 17:18:17 UTC (rev 57458)
+++ data/CVE/list	2017-11-08 19:40:28 UTC (rev 57459)
@@ -1,3 +1,7 @@
+CVE-2017-16667 [shell injection in notify-send]
+	- backintime <unfixed>
+	NOTE: https://github.com/bit-team/backintime/issues/834
+	NOTE: https://github.com/bit-team/backintime/commit/cef81d0da93ff601252607df3db1a48f7f6f01b3
 CVE-2017-16663 (In sam2p 0.49.4, there are integer overflows (with resultant heap-based ...)
 	- sam2p <removed>
 	NOTE: https://github.com/pts/sam2p/issues/16




More information about the Secure-testing-commits mailing list