[Git][security-tracker-team/security-tracker][master] Add "new" CVEs for bouncycastle

Salvatore Bonaccorso carnil at debian.org
Tue Jun 5 09:30:36 BST 2018


Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
d8a77a89 by Salvatore Bonaccorso at 2018-06-05T10:29:51+02:00
Add "new" CVEs for bouncycastle

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
--- a/data/CVE/list
+++ b/data/CVE/list
@@ -39,13 +39,17 @@ CVE-2018-11718
 CVE-2017-18286 (nZEDb v0.7.3.3 has XSS in the 404 error page. ...)
 	TODO: check
 CVE-2016-1000352 (In the Bouncy Castle JCE Provider version 1.55 and earlier the ECIES ...)
-	TODO: check
+	- bouncycastle 1.56-1
+	NOTE: https://github.com/bcgit/bc-java/commit/9385b0ebd277724b167fe1d1456e3c112112be1f
 CVE-2016-1000346 (In the Bouncy Castle JCE Provider version 1.55 and earlier the other ...)
-	TODO: check
+	- bouncycastle 1.56-1
+	NOTE: https://github.com/bcgit/bc-java/commit/1127131c89021612c6eefa26dbe5714c194e7495#diff-d525a20b8acaed791ae2f0f770eb5937
 CVE-2016-1000345 (In the Bouncy Castle JCE Provider version 1.55 and earlier the ...)
-	TODO: check
+	- bouncycastle 1.56-1
+	NOTE: https://github.com/bcgit/bc-java/commit/21dcb3d9744c83dcf2ff8fcee06dbca7bfa4ef35#diff-4439ce586bf9a13bfec05c0d113b8098
 CVE-2016-1000344 (In the Bouncy Castle JCE Provider version 1.55 and earlier the DHIES ...)
-	TODO: check
+	- bouncycastle 1.56-1
+	NOTE: https://github.com/bcgit/bc-java/commit/9385b0ebd277724b167fe1d1456e3c112112be1f
 CVE-2018-11717
 	RESERVED
 CVE-2018-11716



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/d8a77a89b67e13435145652b141fa8d6af8a27bd

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/d8a77a89b67e13435145652b141fa8d6af8a27bd
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20180605/54689467/attachment.html>


More information about the debian-security-tracker-commits mailing list