1
PublicDateAtUSN: 2017-02-23
2
Candidate: CVE-2017-6306
5
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2017-6306
6
https://www.x41-dsec.de/lab/advisories/x41-2017-002-ytnef/
7
http://www.openwall.com/lists/oss-security/2017/02/15/4
8
https://github.com/Yeraze/ytnef/pull/27
9
https://usn.ubuntu.com/usn/usn-3288-1
11
An issue was discovered in ytnef before 1.9.1. This is related to a patch
12
described as "9 of 9. Directory Traversal using the filename;
13
SanitizeFilename function in settings.c."
22
upstream: https://github.com/Yeraze/ytnef/commit/b36d6b25b7a546fc28d6c3812124e487987a4910
23
upstream_libytnef: released (1.9.1-1)
24
precise_libytnef: ignored (reached end-of-life)
25
precise/esm_libytnef: DNE (precise was needs-triage)
26
trusty_libytnef: released (1.5-6ubuntu0.1)
27
vivid/stable-phone-overlay_libytnef: DNE
28
vivid/ubuntu-core_libytnef: DNE
29
xenial_libytnef: needed
30
yakkety_libytnef: ignored (reached end-of-life)
31
zesty_libytnef: not-affected (1.9.1-1)
32
artful_libytnef: not-affected (1.9.1-1)
33
bionic_libytnef: not-affected (1.9.1-1)
34
devel_libytnef: not-affected (1.9.1-1)