[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] Add CVE-2018-5709 and CVE-2018-5710 for krb5

Salvatore Bonaccorso carnil at debian.org
Tue Jan 16 21:23:39 UTC 2018


Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
914fd9cc by Salvatore Bonaccorso at 2018-01-16T22:23:16+01:00
Add CVE-2018-5709 and CVE-2018-5710 for krb5

Kept TODO for now for pending investigation.

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
--- a/data/CVE/list
+++ b/data/CVE/list
@@ -28,8 +28,12 @@ CVE-2018-5711 (gd_gif_in.c in the GD Graphics Library (aka libgd), as used in PH
 	NOTE: PHP Bug: https://bugs.php.net/bug.php?id=75571
 	- libgd2 <unfixed>
 CVE-2018-5710 (An issue was discovered in MIT Kerberos 5 (aka krb5) through 1.16. The ...)
+	- krb5 <unfixed>
+	NOTE: https://github.com/poojamnit/Kerberos-V5-1.16-Vulnerabilities/tree/master/Denial%20Of%20Service(DoS)
 	TODO: check
 CVE-2018-5709 (An issue was discovered in MIT Kerberos 5 (aka krb5) through 1.16. ...)
+	- krb5 <unfixed>
+	NOTE: https://github.com/poojamnit/Kerberos-V5-1.16-Vulnerabilities/tree/master/Integer%20Overflow
 	TODO: check
 CVE-2018-5708
 	RESERVED



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/914fd9cc8a3f2c123ec1352731b62709362d7bc8

---
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/914fd9cc8a3f2c123ec1352731b62709362d7bc8
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.alioth.debian.org/pipermail/secure-testing-commits/attachments/20180116/54f633e8/attachment.html>


More information about the Secure-testing-commits mailing list