[Secure-testing-commits] r24204 - data/CVE

Henri Salo fgeek-guest at alioth.debian.org
Tue Oct 29 11:51:56 UTC 2013


Author: fgeek-guest
Date: 2013-10-29 11:51:55 +0000 (Tue, 29 Oct 2013)
New Revision: 24204

Modified:
   data/CVE/list
Log:
CVE-2013-4472, CVE-2013-4472, CVE-2013-4474 poppler/xpdf needs proper analysis

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2013-10-29 11:34:12 UTC (rev 24203)
+++ data/CVE/list	2013-10-29 11:51:55 UTC (rev 24204)
@@ -3944,12 +3944,19 @@
 	RESERVED
 CVE-2013-4475
 	RESERVED
-CVE-2013-4474
+CVE-2013-4474 [User controlled format string]
 	RESERVED
-CVE-2013-4473
+	- poppler <unfixed>
+	NOTE: check
+CVE-2013-4473 [Stack based buffer overflow]
 	RESERVED
-CVE-2013-4472
+	- poppler <unfixed>
+	NOTE: check
+CVE-2013-4472 [Race condition on temporary file]
 	RESERVED
+	- poppler <unfixed>
+	- xpdf <unfixed>
+	NOTE: check
 CVE-2013-4471
 	RESERVED
 CVE-2013-4470 [memory corruption with UDP_CORK and UFO]




More information about the Secure-testing-commits mailing list