[Secure-testing-commits] r55351 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Fri Sep 1 05:01:17 UTC 2017


Author: carnil
Date: 2017-09-01 05:01:16 +0000 (Fri, 01 Sep 2017)
New Revision: 55351

Modified:
   data/CVE/list
Log:
Add CVE-2017-14061/libidn*

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-09-01 04:55:57 UTC (rev 55350)
+++ data/CVE/list	2017-09-01 05:01:16 UTC (rev 55351)
@@ -31,7 +31,11 @@
 	- libidn <unfixed>
 	NOTE: https://gitlab.com/libidn/libidn2/commit/3284eb342cd0ed1a18786e3fcdf0cdd7e76676bd
 CVE-2017-14061 (Integer overflow in the _isBidi function in bidi.c in Libidn2 before ...)
-	TODO: check
+	- libidn2-0 <unfixed>
+	[stretch] - libidn2-0 <not-affected> (Vulnerable code not present)
+	[jessie] - libidn2-0 <not-affected> (Vulnerable code not present)
+	- libidn <not-affected> (Vulnerable code not present)
+	NOTE: https://gitlab.com/libidn/libidn2/commit/16853b6973a1e72fee2b7cccda85472cb9951305
 CVE-2017-14060 (In ImageMagick 7.0.6-10, a NULL Pointer Dereference issue is present in ...)
 	TODO: check
 CVE-2017-14059 (In FFmpeg 3.3.3, a DoS in cine_read_header() due to lack of an EOF ...)




More information about the Secure-testing-commits mailing list