[Git][security-tracker-team/security-tracker][master] Add commit references for upstream fixes on CVE-2015-464{5,6}

Salvatore Bonaccorso carnil at debian.org
Wed Jul 24 08:37:29 BST 2019



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
db0c8eef by Salvatore Bonaccorso at 2019-07-24T07:36:44Z
Add commit references for upstream fixes on CVE-2015-464{5,6}

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -186440,11 +186440,15 @@ CVE-2015-4646 ((1) unsquash-1.c, (2) unsquash-2.c, (3) unsquash-3.c, and (4) uns
 	[jessie] - squashfs-tools <no-dsa> (Minor issue)
 	[wheezy] - squashfs-tools <no-dsa> (Minor issue)
 	[squeeze] - squashfs-tools <no-dsa> (Minor issue)
+	NOTE: https://github.com/plougher/squashfs-tools/commit/f95864afe8833fe3ad782d714b41378e860977b1
+	NOTE: https://github.com/plougher/squashfs-tools/commit/ba215d73e153a6f237088b4ecb88c702bb4d4183
 CVE-2015-4645 (Integer overflow in the read_fragment_table_4 function in unsquash-4.c ...)
 	- squashfs-tools 1:4.3-2 (bug #793467)
 	[jessie] - squashfs-tools <no-dsa> (Minor issue)
 	[wheezy] - squashfs-tools <no-dsa> (Minor issue)
 	[squeeze] - squashfs-tools <no-dsa> (Minor issue)
+	NOTE: https://github.com/plougher/squashfs-tools/commit/f95864afe8833fe3ad782d714b41378e860977b1
+	NOTE: https://github.com/plougher/squashfs-tools/commit/ba215d73e153a6f237088b4ecb88c702bb4d4183
 CVE-2015-4642 (The escapeshellarg function in ext/standard/exec.c in PHP before 5.4.4 ...)
 	- php5 <not-affected> (Windows specific)
 	NOTE: https://bugs.php.net/bug.php?id=69646



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/db0c8eefc85e7823d7677081f49ab8de1bb58dc8

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/db0c8eefc85e7823d7677081f49ab8de1bb58dc8
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20190724/c626e37a/attachment.html>


More information about the debian-security-tracker-commits mailing list