[Git][security-tracker-team/security-tracker][master] 2 commits: Add information for CVE-2018-12326/redis

Salvatore Bonaccorso carnil at debian.org
Sun Jun 17 21:15:28 BST 2018


Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
7a8c7616 by Salvatore Bonaccorso at 2018-06-17T22:14:42+02:00
Add information for CVE-2018-12326/redis

- - - - -
864fd1cd by Salvatore Bonaccorso at 2018-06-17T22:15:05+02:00
Fix for CVE-2018-12326 is included in DSA-4230-1

- - - - -


2 changed files:

- data/CVE/list
- data/DSA/list


Changes:

=====================================
data/CVE/list
=====================================
--- a/data/CVE/list
+++ b/data/CVE/list
@@ -513,7 +513,9 @@ CVE-2018-12328
 CVE-2018-12327
 	RESERVED
 CVE-2018-12326 (Buffer overflow in redis-cli of Redis before 4.0.10 and 5.x before 5.0 ...)
-	TODO: check
+	- redis 5:4.0.10-1
+	NOTE: https://gist.github.com/fakhrizulkifli/f831f40ec6cde4f744c552503d8698f0
+	NOTE: https://github.com/antirez/redis/commit/9fdcc15962f9ff4baebe6fdd947816f43f730d50
 CVE-2018-12325
 	RESERVED
 CVE-2018-12324


=====================================
data/DSA/list
=====================================
--- a/data/DSA/list
+++ b/data/DSA/list
@@ -2,7 +2,7 @@
 	{CVE-2018-0495}
 	[stretch] - libgcrypt20 1.7.6-2+deb9u3
 [17 Jun 2018] DSA-4230-1 redis - security update
-	{CVE-2018-11218 CVE-2018-11219}
+	{CVE-2018-11218 CVE-2018-11219 CVE-2018-12326}
 	[stretch] - redis 3:3.2.6-3+deb9u1
 [14 Jun 2018] DSA-4229-1 strongswan - security update
 	{CVE-2018-5388 CVE-2018-10811}



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/compare/57c8d84dbfcacdbd41833f1d2c5f05cdaf455b6f...864fd1cdc921a11657c1a14bdf2e419b5c420670

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/compare/57c8d84dbfcacdbd41833f1d2c5f05cdaf455b6f...864fd1cdc921a11657c1a14bdf2e419b5c420670
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20180617/39b22efe/attachment.html>


More information about the debian-security-tracker-commits mailing list