[Secure-testing-commits] r56532 - data/CVE

Guido Guenther agx at moszumanska.debian.org
Mon Oct 9 06:14:00 UTC 2017


Author: agx
Date: 2017-10-09 06:14:00 +0000 (Mon, 09 Oct 2017)
New Revision: 56532

Modified:
   data/CVE/list
Log:
CVE-2017-11735 rejected

Issue in mp3split has CVE-2017-15185

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-10-09 05:11:42 UTC (rev 56531)
+++ data/CVE/list	2017-10-09 06:14:00 UTC (rev 56532)
@@ -9233,12 +9233,8 @@
 	NOTE: https://github.com/vstakhov/rspamd/issues/1738
 CVE-2017-11736 (SQL injection vulnerability in ...)
 	NOT-FOR-US: BigTree CMS
-CVE-2017-11735 (The vorbis_block_clear function in lib/block.c in Xiph.Org libvorbis ...)
-	- libvorbis <unfixed> (low; bug #870342)
-	[stretch] - libvorbis <no-dsa> (Minor issue)
-	[jessie] - libvorbis <no-dsa> (Minor issue)
-	NOTE: http://seclists.org/fulldisclosure/2017/Jul/82
-	NOTE: https://gitlab.xiph.org/xiph/vorbis/issues/2331
+CVE-2017-11735
+	REJECTED
 CVE-2017-11734 (A heap-based buffer over-read was found in the function ...)
 	- ming <removed>
 	NOTE: https://github.com/libming/libming/issues/83




More information about the Secure-testing-commits mailing list