[Git][security-tracker-team/security-tracker][master] CVE-2018-9058/lrzip: fixed in stretch

Sylvain Beucler (@beuc) beuc at debian.org
Sat Apr 9 14:52:26 BST 2022



Sylvain Beucler pushed to branch master at Debian Security Tracker / security-tracker


Commits:
b000148e by Sylvain Beucler at 2022-04-09T15:51:39+02:00
CVE-2018-9058/lrzip: fixed in stretch

- - - - -


2 changed files:

- data/CVE/list
- data/DLA/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -258052,6 +258052,7 @@ CVE-2018-9060
 CVE-2018-9059 (Stack-based buffer overflow in Easy File Sharing (EFS) Web Server 7.2  ...)
 	NOT-FOR-US: Easy File Sharing (EFS)
 CVE-2018-9058 (In Long Range Zip (aka lrzip) 0.631, there is an infinite loop in the  ...)
+	{DLA-2725-1}
 	- lrzip 0.631+git180517-1 (unimportant)
 	NOTE: https://github.com/ckolivas/lrzip/issues/93
 	NOTE: No security impact


=====================================
data/DLA/list
=====================================
@@ -756,7 +756,7 @@
 	{CVE-2020-13933 CVE-2020-17510}
 	[stretch] - shiro 1.3.2-1+deb9u2
 [01 Aug 2021] DLA-2725-1 lrzip - security update
-	{CVE-2017-8842 CVE-2017-8843 CVE-2017-8844 CVE-2017-8845 CVE-2017-8846 CVE-2017-8847 CVE-2017-9928 CVE-2017-9929 CVE-2018-5650 CVE-2018-5747 CVE-2018-5786 CVE-2018-10685 CVE-2018-11496}
+	{CVE-2017-8842 CVE-2017-8843 CVE-2017-8844 CVE-2017-8845 CVE-2017-8846 CVE-2017-8847 CVE-2017-9928 CVE-2017-9929 CVE-2018-5650 CVE-2018-5747 CVE-2018-5786 CVE-2018-9058 CVE-2018-10685 CVE-2018-11496}
 	[stretch] - lrzip 0.631-1+deb9u1
 [01 Aug 2021] DLA-2724-1 condor - security update
 	{CVE-2019-18823}



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/b000148edc7469d9658b5c369385c11d9534f682

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/b000148edc7469d9658b5c369385c11d9534f682
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20220409/50a96d70/attachment-0001.htm>


More information about the debian-security-tracker-commits mailing list