[Secure-testing-commits] r55991 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Fri Sep 22 04:30:30 UTC 2017


Author: carnil
Date: 2017-09-22 04:30:30 +0000 (Fri, 22 Sep 2017)
New Revision: 55991

Modified:
   data/CVE/list
Log:
Add libsndfile issues

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-09-22 04:30:20 UTC (rev 55990)
+++ data/CVE/list	2017-09-22 04:30:30 UTC (rev 55991)
@@ -1048,9 +1048,11 @@
 CVE-2017-14247 (SQL Injection exists in the EyesOfNetwork web interface (aka eonweb) ...)
 	NOT-FOR-US: EyesOfNetwork (EON)
 CVE-2017-14246 (An out of bounds read in the function d2ulaw_array() in ulaw.c of ...)
-	TODO: check
+	- libsndfile <unfixed>
+	NOTE: https://github.com/erikd/libsndfile/issues/317
 CVE-2017-14245 (An out of bounds read in the function d2alaw_array() in alaw.c of ...)
-	TODO: check
+	- libsndfile <unfixed>
+	NOTE: https://github.com/erikd/libsndfile/issues/317
 CVE-2017-14244 (An authentication bypass vulnerability on iBall Baton ADSL2+ Home ...)
 	NOT-FOR-US: iBall
 CVE-2017-14243 (An authentication bypass vulnerability on UTStar WA3002G4 ADSL ...)




More information about the Secure-testing-commits mailing list