[Secure-testing-commits] r55715 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Wed Sep 13 06:22:17 UTC 2017


Author: carnil
Date: 2017-09-13 06:22:17 +0000 (Wed, 13 Sep 2017)
New Revision: 55715

Modified:
   data/CVE/list
Log:
Add two freexl issues

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-09-13 06:18:55 UTC (rev 55714)
+++ data/CVE/list	2017-09-13 06:22:17 UTC (rev 55715)
@@ -33816,10 +33816,14 @@
 	NOTE: https://github.com/simplesamlphp/saml2/commit/7008b0916426212c1cc2fc238b38ab9ebff0748c
 	NOTE: only exploitable in hard to achieve conditions
 	NOTE: http://www.openwall.com/lists/oss-security/2016/12/03/5
-CVE-2017-2924
+CVE-2017-2924 [Heap-based buffer overflow in the read_legacy_biff function]
 	RESERVED
-CVE-2017-2923
+	- freexl <unfixed>
+	NOTE: https://www.talosintelligence.com/vulnerability_reports/TALOS-2017-0431
+CVE-2017-2923 [Heap-based buffer overflow in the read_biff_next_record function]
 	RESERVED
+	- freexl <unfixed>
+	NOTE: https://www.talosintelligence.com/vulnerability_reports/TALOS-2017-0430
 CVE-2017-2922
 	RESERVED
 CVE-2017-2921




More information about the Secure-testing-commits mailing list