[Git][security-tracker-team/security-tracker][master] Add CVE-2019-20063/libmysofa

Salvatore Bonaccorso carnil at debian.org
Mon Dec 30 09:18:49 GMT 2019



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
dbe1e52e by Salvatore Bonaccorso at 2019-12-30T09:17:57Z
Add CVE-2019-20063/libmysofa

- - - - -


2 changed files:

- data/CVE/list
- data/next-point-update.txt


Changes:

=====================================
data/CVE/list
=====================================
@@ -74,7 +74,10 @@ CVE-2019-20065
 CVE-2019-20064
 	RESERVED
 CVE-2019-20063 (hdf/dataobject.c in libmysofa before 0.8 has an uninitialized use of m ...)
-	TODO: check
+	- libmysofa 0.8~dfsg0-1
+	[buster] - libmysofa <no-dsa> (Minor issue; will be fixed in point release)
+	NOTE: https://github.com/hoene/libmysofa/issues/67
+	NOTE: https://github.com/hoene/libmysofa/commit/ecb7b743b6f6d47b93a7bc680a60071a0f9524c6
 CVE-2019-20062
 	RESERVED
 CVE-2019-20061


=====================================
data/next-point-update.txt
=====================================
@@ -12,6 +12,8 @@ CVE-2019-16094
 	[buster] - libmysofa 0.6~dfsg0-3+deb10u1
 CVE-2019-16095
 	[buster] - libmysofa 0.6~dfsg0-3+deb10u1
+CVE-2019-20063
+	[buster] - libmysofa 0.6~dfsg0-3+deb10u1
 CVE-2019-17134
 	[buster] - octavia 3.0.0-3+deb10u1
 CVE-2018-21010



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/dbe1e52e474828a876ea2245a82102cbc2448e35

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/dbe1e52e474828a876ea2245a82102cbc2448e35
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20191230/e6f0805c/attachment-0001.html>


More information about the debian-security-tracker-commits mailing list