[Secure-testing-commits] r19763 - data/CVE

Henri Salo fgeek-guest at alioth.debian.org
Thu Jul 19 15:25:10 UTC 2012


Author: fgeek-guest
Date: 2012-07-19 15:25:10 +0000 (Thu, 19 Jul 2012)
New Revision: 19763

Modified:
   data/CVE/list
Log:
CVE-2012-3401 tiff2pdf

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2012-07-19 10:25:23 UTC (rev 19762)
+++ data/CVE/list	2012-07-19 15:25:10 UTC (rev 19763)
@@ -1319,8 +1319,12 @@
 	RESERVED
 CVE-2012-3402
 	RESERVED
-CVE-2012-3401
+CVE-2012-3401 [tiff2pdf heap-based buffer overflow due to improper initialization of T2P context struct pointer]
 	RESERVED
+	- libtiff-tools <unfixed>
+	TODO: Check if Debian is affected
+	NOTE: http://www.openwall.com/lists/oss-security/2012/07/19/1
+	NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=837577
 CVE-2012-3400
 	RESERVED
 	- linux <unfixed>




More information about the Secure-testing-commits mailing list