[Secure-testing-commits] r55951 - data/CVE

Moritz Muehlenhoff jmm at moszumanska.debian.org
Wed Sep 20 21:24:10 UTC 2017


Author: jmm
Date: 2017-09-20 21:24:10 +0000 (Wed, 20 Sep 2017)
New Revision: 55951

Modified:
   data/CVE/list
Log:
new yadifa issue


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-09-20 21:22:20 UTC (rev 55950)
+++ data/CVE/list	2017-09-20 21:24:10 UTC (rev 55951)
@@ -697,7 +697,9 @@
 	- linux 4.12.13-1
 	NOTE: Fixed by: https://git.kernel.org/linus/b31ff3cdf540110da4572e3e29bd172087af65cc
 CVE-2017-14339 (The DNS packet parser in YADIFA before 2.2.6 does not check for the ...)
-	TODO: check
+	- yadifa <unfixed>
+	NOTE: https://www.tarlogic.com/blog/fuzzing-yadifa-dns/
+	NOTE: https://github.com/yadifa/yadifa/blob/v2.2.6/ChangeLog
 CVE-2017-14338
 	RESERVED
 CVE-2017-14337 (When MISP before 2.4.80 is configured with X.509 certificate ...)




More information about the Secure-testing-commits mailing list