[Secure-testing-commits] r56122 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Mon Sep 25 09:12:04 UTC 2017


Author: carnil
Date: 2017-09-25 09:12:04 +0000 (Mon, 25 Sep 2017)
New Revision: 56122

Modified:
   data/CVE/list
Log:
Update comment for CVE-2017-14266

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-09-25 09:10:13 UTC (rev 56121)
+++ data/CVE/list	2017-09-25 09:12:04 UTC (rev 56122)
@@ -1185,8 +1185,8 @@
 	[jessie] - tcpreplay 3.4.4-2+deb8u1
 	[wheezy] - tcpreplay 3.4.3-2+wheezy2
 	NOTE: Fixed by http://launchpadlibrarian.net/270778908/tcpreplay_3.4.4-2_3.4.4-3.diff.gz
-	NOTE: Possibly a duplicate of CVE-2016-6160 depending on MITRE classification for the
-	NOTE: two vulnerabilities.
+	NOTE: Not a duplicate of CVE-2016-6160 the detailed MITRE description, but both issues
+	NOTE: are addressed with the same patch:
 	NOTE: Patch enforce-maxpacket.patch addresses the issue
 CVE-2017-14265 (A Stack-based Buffer Overflow was discovered in xtrans_interpolate in ...)
 	- libraw <unfixed>




More information about the Secure-testing-commits mailing list