[Secure-testing-commits] r55591 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Sat Sep 9 06:52:58 UTC 2017


Author: carnil
Date: 2017-09-09 06:52:58 +0000 (Sat, 09 Sep 2017)
New Revision: 55591

Modified:
   data/CVE/list
Log:
Annotate tags for upstream versions fixing CVE-2016-103{49,50}

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-09-09 06:40:19 UTC (rev 55590)
+++ data/CVE/list	2017-09-09 06:52:58 UTC (rev 55591)
@@ -16522,14 +16522,14 @@
 	[stretch] - libarchive <no-dsa> (Minor issue)
 	[jessie] - libarchive <no-dsa> (Minor issue)
 	NOTE: https://github.com/libarchive/libarchive/issues/835
-	NOTE: Fixed by: https://github.com/libarchive/libarchive/commit/88eb9e1d73fef46f04677c25b1697b8e25777ed3
+	NOTE: Fixed by: https://github.com/libarchive/libarchive/commit/88eb9e1d73fef46f04677c25b1697b8e25777ed3 (v3.3.0)
 CVE-2016-10349 (The archive_le32dec function in archive_endian.h in libarchive 3.2.2 ...)
 	{DLA-1006-1}
 	- libarchive <unfixed> (bug #861609)
 	[stretch] - libarchive <no-dsa> (Minor issue)
 	[jessie] - libarchive <no-dsa> (Minor issue)
 	NOTE: https://github.com/libarchive/libarchive/issues/834
-	NOTE: Fixed by: https://github.com/libarchive/libarchive/commit/88eb9e1d73fef46f04677c25b1697b8e25777ed3
+	NOTE: Fixed by: https://github.com/libarchive/libarchive/commit/88eb9e1d73fef46f04677c25b1697b8e25777ed3 (v3.3.0)
 CVE-2017-8342 (Radicale before 1.1.2 and 2.x before 2.0.0rc2 is prone to timing ...)
 	{DLA-934-1}
 	- radicale 1.1.1+20160115-4 (bug #861514)




More information about the Secure-testing-commits mailing list