[Git][security-tracker-team/security-tracker][master] 2 commits: Add CVE-2019-7665/elfutils
Salvatore Bonaccorso
carnil at debian.org
Sat Feb 9 20:22:18 GMT 2019
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits:
4aad846d by Salvatore Bonaccorso at 2019-02-09T20:21:26Z
Add CVE-2019-7665/elfutils
- - - - -
f1144376 by Salvatore Bonaccorso at 2019-02-09T20:21:50Z
Add CVE-2019-7664/elfutils
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -19,9 +19,14 @@ CVE-2019-7667
CVE-2019-7666
RESERVED
CVE-2019-7665 (In elfutils 0.175, a heap-based buffer over-read was discovered in the ...)
- TODO: check
+ - elfutils <unfixed>
+ NOTE: https://sourceware.org/bugzilla/show_bug.cgi?id=24089
+ NOTE: https://sourceware.org/ml/elfutils-devel/2019-q1/msg00049.html
+ NOTE: https://sourceware.org/git/?p=elfutils.git;a=commit;h=de01cc6f9446187d69b9748bb3636361c79e77a4
CVE-2019-7664 (In elfutils 0.175, a negative-sized memcpy is attempted in elf_cvt_note ...)
- TODO: check
+ - elfutils <unfixed>
+ NOTE: https://sourceware.org/bugzilla/show_bug.cgi?id=24084
+ NOTE: https://sourceware.org/git/?p=elfutils.git;a=commit;h=e65d91d21cb09d83b001fef9435e576ba447db32
CVE-2019-7663 (An Invalid Address dereference was discovered in ...)
TODO: check
CVE-2019-7662 (An assertion failure was discovered in ...)
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/compare/265a08200f2211c6b90c39de631b8bcae2c85e44...f11443768d9b587e1ae2a8fe1d141186bd8c8948
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/compare/265a08200f2211c6b90c39de631b8bcae2c85e44...f11443768d9b587e1ae2a8fe1d141186bd8c8948
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20190209/364dc45c/attachment.html>
More information about the debian-security-tracker-commits
mailing list