From 03bec0f81fc958d7b54d3754b51877f44e2a1dfe Mon Sep 17 00:00:00 2001 From: Salvatore Bonaccorso Date: Sat, 23 Jan 2021 11:20:59 +0100 Subject: Update information on CVE-2017-1000455/guix --- data/CVE/2017.list | 3 ++- 1 file changed, 2 insertions(+), 1 deletion(-) (limited to 'data/CVE/2017.list') diff --git a/data/CVE/2017.list b/data/CVE/2017.list index cae264bb40..4eb1befa2b 100644 --- a/data/CVE/2017.list +++ b/data/CVE/2017.list @@ -2502,8 +2502,9 @@ CVE-2017-1000456 (freedesktop.org libpoppler 0.60.1 fails to validate boundaries NOTE: https://bugs.freedesktop.org/show_bug.cgi?id=103116 NOTE: Fixed by: https://cgit.freedesktop.org/poppler/poppler/commit/?id=7ee9dadef37b20bca707a6b1e858e17d191e368b CVE-2017-1000455 (GuixSD prior to Git commit 5e66574a128937e7f2fcf146d146225703ccfd5d us ...) - - guix (bug #850644) + - guix (Fixed before initial upload to Debian) NOTE: https://lists.gnu.org/archive/html/guix-devel/2017-10/msg00090.html + NOTE: https://git.savannah.gnu.org/cgit/guix.git/commit/?id=5e66574a128937e7f2fcf146d146225703ccfd5d (v0.14.0) CVE-2017-1000454 (CMS Made Simple 2.1.6, 2.2, 2.2.1 are vulnerable to Smarty Template In ...) NOT-FOR-US: CMS Made Simple CVE-2017-1000453 (CMS Made Simple version 2.1.6 and 2.2 are vulnerable to Smarty templat ...) -- cgit v1.2.3