Author: thijs
Date: 2016-12-30 12:08:33 +0000 (Fri, 30 Dec 2016)
New Revision: 47582
Modified:
data/CVE/list
Log:
CVE-2016-10033 nmu'ed in sid
Modified: data/CVE/list
===================================================================
--- data/CVE/list 2016-12-30 10:55:00 UTC (rev 47581)
+++ data/CVE/list 2016-12-30 12:08:33 UTC (rev 47582)
@@ -2163,7 +2163,7 @@
NOTE:
https://legalhackers.com/advisories/PHPMailer-Exploit-Remote-Code-Exec-CVE-2016-10045-Vuln-Patch-Bypass.html
CVE-2016-10033 [remote code execution]
RESERVED
- - libphp-phpmailer <unfixed> (bug #849365)
+ - libphp-phpmailer 5.2.14+dfsg-2.1 (bug #849365)
NOTE:
https://legalhackers.com/advisories/PHPMailer-Exploit-Remote-Code-Exec-CVE-2016-10033-Vuln.html
NOTE: Fixed by:
https://github.com/PHPMailer/PHPMailer/commit/4835657cd639fbd09afd33307cef164edf807cdc#diff-ace81e501931d8763b49f2410cf3094dR1449
NOTE: Fix potentially incomplete, cf
http://www.openwall.com/lists/oss-security/2016/12/28/1
_______________________________________________
Secure-testing-commits mailing list
[email protected]
http://lists.alioth.debian.org/cgi-bin/mailman/listinfo/secure-testing-commits