Author: carnil Date: 2017-03-01 07:11:34 +0000 (Wed, 01 Mar 2017) New Revision: 49333
Modified: data/CVE/list Log: CVE-2017-6384/atheme-services assigned Modified: data/CVE/list =================================================================== --- data/CVE/list 2017-03-01 06:43:24 UTC (rev 49332) +++ data/CVE/list 2017-03-01 07:11:34 UTC (rev 49333) @@ -28,8 +28,6 @@ NOTE: Fixed by: https://cgit.freedesktop.org/virglrenderer/commit/?id=737c3350850ca4dbc5633b3bdb4118176ce59920 CVE-2017-6385 RESERVED -CVE-2017-6384 - RESERVED CVE-2017-6383 RESERVED CVE-2017-6382 @@ -727,13 +725,11 @@ RESERVED CVE-2017-6102 RESERVED -CVE-2017-XXXX [atheme: memory leak could lead to DOS] +CVE-2017-6384 [atheme: memory leak could lead to DOS] - atheme-services 7.2.9-1 (bug #855588) [jessie] - atheme-services <not-affected> (versions prior to 7.2.7 not vulnerable) NOTE: 7.2.7 vulnerable, fixed in 7.2.8, but the fix introduced another DOS, fixed in 7.2.9 - NOTE: CVE requested: https://github.com/atheme/atheme/pull/539#issuecomment-278204870 NOTE: (Possibly) introduced in https://github.com/atheme/atheme/commit/8ac7aa8d007331ae694f099c288e27f911e8cad1 (v7.2.7) - TODO: check correctness of introducing commit CVE-2017-6101 RESERVED CVE-2017-6099 (Cross-site scripting (XSS) vulnerability in GetAuthDetails.html.php in ...) _______________________________________________ Secure-testing-commits mailing list Secure-testing-commits@lists.alioth.debian.org http://lists.alioth.debian.org/cgi-bin/mailman/listinfo/secure-testing-commits