[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] Add bug reference for CVE-2017-1000190/simple-xml

Salvatore Bonaccorso carnil at debian.org
Sat Jan 27 07:30:51 UTC 2018


Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
b16f95a9 by Salvatore Bonaccorso at 2018-01-27T08:30:05+01:00
Add bug reference for CVE-2017-1000190/simple-xml

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
--- a/data/CVE/list
+++ b/data/CVE/list
@@ -16820,7 +16820,7 @@ CVE-2017-1000221 (In Opencast 2.2.3 and older if user names overlap, the Opencas
 CVE-2017-1000217 (Opencast 2.3.2 and older versions are vulnerable to script injections ...)
 	NOT-FOR-US: Opencast
 CVE-2017-1000190 (SimpleXML (latest version 2.7.1) is vulnerable to an XXE vulnerability ...)
-	- simple-xml <unfixed>
+	- simple-xml <unfixed> (bug #888547)
 	[stretch] - simple-xml <no-dsa> (Minor issue)
 	[jessie] - simple-xml <no-dsa> (Minor issue)
 	[wheezy] - simple-xml <no-dsa> (Minor issue)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/b16f95a91b9e43ac177675ffd4608f7af9c0dd3a

---
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/b16f95a91b9e43ac177675ffd4608f7af9c0dd3a
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.alioth.debian.org/pipermail/secure-testing-commits/attachments/20180127/c11d270a/attachment-0001.html>


More information about the Secure-testing-commits mailing list