[Git][security-tracker-team/security-tracker][master] Add notes for CVE-2019-8457/sqlite3

Jonas Meurer gitlab at salsa.debian.org
Mon Jul 1 15:39:57 BST 2019



Jonas Meurer pushed to branch master at Debian Security Tracker / security-tracker


Commits:
5b6d66e5 by Jonas Meurer at 2019-07-01T14:38:41Z
Add notes for CVE-2019-8457/sqlite3

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -12656,6 +12656,10 @@ CVE-2019-8458 (Check Point Endpoint Security Client for Windows, with Anti-Malwa
 CVE-2019-8457 (SQLite3 from 3.6.0 to and including 3.27.2 is vulnerable to heap out-o ...)
 	- sqlite3 3.27.2-3 (bug #929775)
 	NOTE: https://www.sqlite.org/src/info/90acdbfce9c08858
+	NOTE: Affected function is not used in Debian and meant for debugging purposes,
+	NOTE: backporting the fix would be very complex.
+	NOTE: https://lists.debian.org/debian-lts/2019/06/msg00013.html
+	NOTE: https://lists.debian.org/debian-lts/2019/06/msg00036.html
 CVE-2019-8456 (Check Point IKEv2 IPsec VPN up to R80.30, in some less common conditio ...)
 	NOT-FOR-US: Check Point
 CVE-2019-8455 (A hard-link created from the log file of Check Point ZoneAlarm up to 1 ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/5b6d66e593067f4f5f52bd3fd2468ba35df29abf

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/5b6d66e593067f4f5f52bd3fd2468ba35df29abf
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20190701/78565c73/attachment.html>


More information about the debian-security-tracker-commits mailing list