[Git][security-tracker-team/security-tracker][master] Add CVE-2018-14663/dnsdist

Salvatore Bonaccorso carnil at debian.org
Thu Nov 8 14:33:09 GMT 2018


Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
8005afe8 by Salvatore Bonaccorso at 2018-11-08T14:32:33Z
Add CVE-2018-14663/dnsdist

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -10840,8 +10840,11 @@ CVE-2018-14665 (A flaw was found in xorg-x11-server before 1.20.3. An incorrect
 	NOTE: Fixed by: https://gitlab.freedesktop.org/xorg/xserver/commit/50c0cf885a6e91c0ea71fb49fa8f1b7c86fe330e
 CVE-2018-14664 (A flaw was found in foreman from versions 1.18. A stored cross-site ...)
 	- foreman <itp> (bug #663101)
-CVE-2018-14663
+CVE-2018-14663 [Record smuggling when adding ECS or XPF]
 	RESERVED
+	- dnsdist <unfixed>
+	[stretch] - dnsdist <no-dsa> (Minor issue)
+	NOTE: https://dnsdist.org/security-advisories/powerdns-advisory-for-dnsdist-2018-08.html
 CVE-2018-14662
 	RESERVED
 CVE-2018-14661 (It was found that usage of snprintf function in feature/locks ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/8005afe8b038fbf80cc591b6f2bd4bd54a0a5abd

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/8005afe8b038fbf80cc591b6f2bd4bd54a0a5abd
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20181108/849da712/attachment.html>


More information about the debian-security-tracker-commits mailing list