[Secure-testing-commits] r55684 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Tue Sep 12 10:50:25 UTC 2017


Author: carnil
Date: 2017-09-12 10:50:24 +0000 (Tue, 12 Sep 2017)
New Revision: 55684

Modified:
   data/CVE/list
Log:
libidn and libidn2-0 issues fixed in unstable

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-09-12 10:48:15 UTC (rev 55683)
+++ data/CVE/list	2017-09-12 10:50:24 UTC (rev 55684)
@@ -765,11 +765,11 @@
 	NOTE: https://github.com/flori/json/commit/8f782fd8e181d9cfe9387ded43a5ca9692266b85
 CVE-2017-14062 (Integer overflow in the decode_digit function in puny_decode.c in ...)
 	{DLA-1085-1 DLA-1084-1}
-	- libidn2-0 <unfixed> (bug #873902)
-	- libidn <unfixed> (bug #873903)
+	- libidn2-0 2.0.2-4 (bug #873902)
+	- libidn 1.33-2 (bug #873903)
 	NOTE: https://gitlab.com/libidn/libidn2/commit/3284eb342cd0ed1a18786e3fcdf0cdd7e76676bd
 CVE-2017-14061 (Integer overflow in the _isBidi function in bidi.c in Libidn2 before ...)
-	- libidn2-0 <unfixed> (bug #873904)
+	- libidn2-0 2.0.2-4 (bug #873904)
 	[stretch] - libidn2-0 <not-affected> (Vulnerable code not present)
 	[jessie] - libidn2-0 <not-affected> (Vulnerable code not present)
 	[wheezy] - libidn2-0 <not-affected> (Vulnerable code not present)




More information about the Secure-testing-commits mailing list