[Secure-testing-commits] r23147 - data/CVE

Raphael Geissert atomo64-guest at alioth.debian.org
Tue Jul 30 12:32:23 UTC 2013


Author: atomo64-guest
Date: 2013-07-30 12:32:23 +0000 (Tue, 30 Jul 2013)
New Revision: 23147

Modified:
   data/CVE/list
Log:
kdegraphics in squeeze not affected by libraw double-free


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2013-07-30 11:48:09 UTC (rev 23146)
+++ data/CVE/list	2013-07-30 12:32:23 UTC (rev 23147)
@@ -6789,7 +6789,7 @@
 	[wheezy] - darktable <no-dsa> (minor issue)
 	[wheezy] - libkdcraw <no-dsa> (minor issue)
 	- kdegraphics <removed>
-	[squeeze] - kdegraphics <no-dsa> (builds kdcraw; minor issue)
+	[squeeze] - kdegraphics <not-affected> (embedded version of kdcraw+libraw too old)
 	NOTE: http://www.openwall.com/lists/oss-security/2013/05/28/3
 	NOTE: https://github.com/LibRaw/LibRaw/commit/19ffddb0fe1a4ffdb459b797ffcf7f490d28b5a6
 CVE-2013-2125




More information about the Secure-testing-commits mailing list