[Secure-testing-commits] r55349 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Fri Sep 1 04:55:47 UTC 2017


Author: carnil
Date: 2017-09-01 04:55:47 +0000 (Fri, 01 Sep 2017)
New Revision: 55349

Modified:
   data/CVE/list
Log:
Add CVE-2017-14062/libidn2-0

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-09-01 04:35:53 UTC (rev 55348)
+++ data/CVE/list	2017-09-01 04:55:47 UTC (rev 55349)
@@ -27,7 +27,8 @@
 CVE-2017-14064 (Ruby through 2.2.7, 2.3.x through 2.3.4, and 2.4.x through 2.4.1 can ...)
 	TODO: check
 CVE-2017-14062 (Integer overflow in the decode_digit function in puny_decode.c in ...)
-	TODO: check
+	- libidn2-0 <unfixed>
+	NOTE: https://gitlab.com/libidn/libidn2/commit/3284eb342cd0ed1a18786e3fcdf0cdd7e76676bd
 CVE-2017-14061 (Integer overflow in the _isBidi function in bidi.c in Libidn2 before ...)
 	TODO: check
 CVE-2017-14060 (In ImageMagick 7.0.6-10, a NULL Pointer Dereference issue is present in ...)




More information about the Secure-testing-commits mailing list