Re: CVE-2016-10229 in 4.4.x series

From: Willy Tarreau
Date: Tue May 16 2017 - 02:06:26 EST


On Mon, May 15, 2017 at 10:53:50PM -0700, Steven Pease wrote:
> Is there any particular reason that the CVE appears to be filed
> against 4.4.60? Or is this just a mistake?
>
> http://www.cvedetails.com/cve/CVE-2016-10229/

I have no idea why. Maybe they mentionned the current version at the
moment the CVE was issued (which seems to match). In fact this bug was
discovered as being a vulnerability long after the bug was fixed.

Willy