[Git][security-tracker-team/security-tracker][master] CVE-2019-1429{5,6}/upx-ucl fixed in unstable

Salvatore Bonaccorso carnil at debian.org
Tue Jul 30 06:00:06 BST 2019



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
30014819 by Salvatore Bonaccorso at 2019-07-30T04:54:05Z
CVE-2019-1429{5,6}/upx-ucl fixed in unstable

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -305,11 +305,11 @@ CVE-2007-6762 (In the Linux kernel before 2.6.20, there is an off-by-one bug in
 	- linux <not-affected> (Fixed before src:linux-2.6 -> src:linux rename)
 	NOTE: https://git.kernel.org/linus/2a2f11c227bdf292b3a2900ad04139d301b56ac4
 CVE-2019-14296 (canUnpack in p_vmlinx.cpp in UPX 3.95 allows remote attackers to cause ...)
-	- upx-ucl <unfixed> (unimportant; bug #933232)
+	- upx-ucl 3.95-2 (unimportant; bug #933232)
 	NOTE: https://github.com/upx/upx/issues/287
 	NOTE: https://github.com/upx/upx/commit/276b748aa6021c38a2dc699153f61b10e76bc3d2
 CVE-2019-14295 (An Integer overflow in the getElfSections function in p_vmlinx.cpp in  ...)
-	- upx-ucl <unfixed> (unimportant; bug #933232)
+	- upx-ucl 3.95-2 (unimportant; bug #933232)
 	NOTE: https://github.com/upx/upx/issues/286
 	NOTE: https://github.com/upx/upx/commit/58b122d97da1e02dfec24b10b6b8f56218b5622c
 	NOTE: https://github.com/upx/upx/commit/6a53c0b3d499d62346a5c51034db543a4ef78ea3



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/30014819aece62332abf06557572e4b1ea633eb0

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/30014819aece62332abf06557572e4b1ea633eb0
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20190730/2e3adcb8/attachment.html>


More information about the debian-security-tracker-commits mailing list