[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] Add CVE-2018-1000127/memcached

Salvatore Bonaccorso carnil at debian.org
Wed Mar 14 11:27:48 UTC 2018


Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
4f5738ac by Salvatore Bonaccorso at 2018-03-14T12:27:23+01:00
Add CVE-2018-1000127/memcached

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
--- a/data/CVE/list
+++ b/data/CVE/list
@@ -35,7 +35,9 @@ CVE-2018-1000128 (GPAC MP4Box version prior to commit ...)
 	NOTE: CVE is a duplicate of CVE-2018-7752
 	TODO: Pending confirmation of rejection from MITRE
 CVE-2018-1000127 (memcached version prior to 1.4.37 contains an Integer Overflow ...)
-	TODO: check
+	- memcached 1.5.0-1
+	NOTE: https://github.com/memcached/memcached/commit/a8c4a82787b8b6c256d61bd5c42fb7f92d1bae00
+	NOTE: https://github.com/memcached/memcached/issues/271
 CVE-2018-1000126 (Ajenti version 2 contains an Information Disclosure vulnerability in ...)
 	- ajenti <itp> (bug #792019)
 CVE-2018-1000125 (inversoft prime-jwt version prior to version 1.3.0 or prior to commit ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/4f5738acbe135c54cc740931b92dc98a383a3c1d

---
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/4f5738acbe135c54cc740931b92dc98a383a3c1d
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.alioth.debian.org/pipermail/secure-testing-commits/attachments/20180314/d9f381b6/attachment-0001.html>


More information about the Secure-testing-commits mailing list