[Git][security-tracker-team/security-tracker][master] Add CVE-2018-12911/webkit2gtk

Salvatore Bonaccorso carnil at debian.org
Sat Aug 4 18:37:49 BST 2018


Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
c9b43c7a by Salvatore Bonaccorso at 2018-08-04T17:37:15Z
Add CVE-2018-12911/webkit2gtk

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
--- a/data/CVE/list
+++ b/data/CVE/list
@@ -4803,7 +4803,9 @@ CVE-2018-12913 (In Miniz 2.0.7, tinfl_decompress in miniz_tinfl.c has an infinit
 CVE-2018-12912 (An issue wan discovered in admin\controllers\database.php in HongCMS ...)
 	NOT-FOR-US: HongCMS
 CVE-2018-12911 (WebKitGTK+ 2.20.3 has an off-by-one error, with a resultant ...)
-	TODO: check
+	- webkit2gtk <unfixed> (unimportant)
+	NOTE: https://trac.webkit.org/changeset/233404/webkit
+	NOTE: Not covered by security support
 CVE-2018-12910 (The get_cookies function in soup-cookie-jar.c in libsoup 2.63.2 allows ...)
 	{DSA-4241-1 DLA-1416-1}
 	- libsoup2.4 2.62.2-2



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/c9b43c7a3f6c205e735f2adfd950a359c9f2ff3d

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/c9b43c7a3f6c205e735f2adfd950a359c9f2ff3d
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20180804/03be99ae/attachment.html>


More information about the debian-security-tracker-commits mailing list