[Git][security-tracker-team/security-tracker][master] radare2 bug

Moritz Muehlenhoff jmm at debian.org
Tue May 1 11:17:12 BST 2018


Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker


Commits:
a044b16f by Moritz Muehlenhoff at 2018-05-01T12:16:43+02:00
radare2 bug

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
--- a/data/CVE/list
+++ b/data/CVE/list
@@ -956,14 +956,14 @@ CVE-2018-10188 (phpMyAdmin 4.8.0 before 4.8.0-1 has CSRF, allowing an attacker t
 	NOTE: https://www.phpmyadmin.net/security/PMASA-2018-2/
 	NOTE: https://github.com/phpmyadmin/phpmyadmin/commit/c6dd6b56e236a3aff953cee4135ecaa67130e641
 CVE-2018-10187 (In radare2 2.5.0, there is a heap-based buffer over-read in the ...)
-	- radare2 <unfixed> (low)
+	- radare2 <unfixed> (low; bug #897305)
 	[stretch] - radare2 <no-dsa> (Minor issue)
 	[jessie] - radare2 <no-dsa> (Minor issue)
 	[wheezy] - radare2 <no-dsa> (Minor issue)
 	NOTE: https://github.com/radare/radare2/issues/9913
 	NOTE: https://github.com/radare/radare2/commit/cdb278059b7b0aaaaa2315b82d0fa6ad50433db0
 CVE-2018-10186 (In radare2 2.5.0, there is a heap-based buffer over-read in the ...)
-	- radare2 <unfixed> (low)
+	- radare2 <unfixed> (low; bug #897305)
 	[stretch] - radare2 <no-dsa> (Minor issue)
 	[jessie] - radare2 <no-dsa> (Minor issue)
 	[wheezy] - radare2 <no-dsa> (Minor issue)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/a044b16f481b389ccafb3b61870cba17d5b7002e

---
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/a044b16f481b389ccafb3b61870cba17d5b7002e
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20180501/ea261a8a/attachment.html>


More information about the debian-security-tracker-commits mailing list