[Git][security-tracker-team/security-tracker][master] CVE-2018-1000667/nasm fixed in unstable via 2.14-1

Salvatore Bonaccorso carnil at debian.org
Sun Nov 18 16:55:38 GMT 2018


Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
80233332 by Salvatore Bonaccorso at 2018-11-18T16:53:58Z
CVE-2018-1000667/nasm fixed in unstable via 2.14-1

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -7140,8 +7140,9 @@ CVE-2018-1000671 (sympa version 6.2.16 and later contains a CWE-601: URL Redirec
 CVE-2018-1000668 (jsish version 2.4.70 2.047 contains a CWE-125: Out-of-bounds Read ...)
 	NOT-FOR-US: jsish
 CVE-2018-1000667 (NASM nasm-2.13.03 nasm- 2.14rc15 version 2.14rc15 and earlier contains ...)
-	- nasm <unfixed> (unimportant)
+	- nasm 2.14-1 (unimportant)
 	NOTE: https://bugzilla.nasm.us/show_bug.cgi?id=3392507
+	NOTE: https://github.com/netwide-assembler/nasm/commit/c713b5f994cf7b29164c3b6838b91f0499591434
 	NOTE: https://github.com/cyrillos/nasm/issues/3
 	NOTE: Crash in CLI tool, no security impact
 CVE-2018-1000666 (GIG Technology NV JumpScale Portal 7 version before commit ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/80233332da7885059024f5f68e248dc5fa44ab40

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/80233332da7885059024f5f68e248dc5fa44ab40
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20181118/c91ad992/attachment.html>


More information about the debian-security-tracker-commits mailing list