[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] Add CVE-2018-1000097/sharutils

Salvatore Bonaccorso carnil at debian.org
Tue Mar 13 10:02:04 UTC 2018


Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
f63dbfd2 by Salvatore Bonaccorso at 2018-03-13T11:01:40+01:00
Add CVE-2018-1000097/sharutils

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
--- a/data/CVE/list
+++ b/data/CVE/list
@@ -9,7 +9,8 @@ CVE-2018-8086 (The basename implementation in string/basename.c in the GNU C Lib
 CVE-2018-8085
 	RESERVED
 CVE-2018-1000097 (Sharutils sharutils (unshar command) version 4.15.2 contains a Buffer ...)
-	TODO: check
+	- sharutils <unfixed>
+	NOTE: http://seclists.org/bugtraq/2018/Feb/54
 CVE-2018-1000096 (brianleroux tiny-json-http version all versions since commit ...)
 	TODO: check
 CVE-2018-1000095 (oVirt version 4.2.0 to 4.2.2 contains a Cross Site Scripting (XSS) ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/f63dbfd27de23e507323090e25077944091a77b0

---
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/f63dbfd27de23e507323090e25077944091a77b0
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.alioth.debian.org/pipermail/secure-testing-commits/attachments/20180313/2f6bf96c/attachment.html>


More information about the Secure-testing-commits mailing list