[Secure-testing-commits] r23633 - data/CVE

Salvatore Bonaccorso carnil at alioth.debian.org
Thu Sep 12 05:18:05 UTC 2013


Author: carnil
Date: 2013-09-12 05:18:04 +0000 (Thu, 12 Sep 2013)
New Revision: 23633

Modified:
   data/CVE/list
Log:
Add openjpeg CVEs

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2013-09-12 05:13:48 UTC (rev 23632)
+++ data/CVE/list	2013-09-12 05:18:04 UTC (rev 23633)
@@ -3200,10 +3200,14 @@
 	[wheezy] - libvirt <not-affected> (vulnerable code not introduced, introduced in 1.1.1)
 	[jessie] - libvirt <not-affected> (vulnerable code not introduced, introduced in 1.1.1)
 	NOTE: http://libvirt.org/git/?p=libvirt.git;a=commit;h=745aa55fbf3e076c4288d5ec3239f5a5d43508a6
-CVE-2013-4290
+CVE-2013-4290 [stack-based buffer overflows]
 	RESERVED
-CVE-2013-4289
+	- openjpeg <unfixed>
+	TODO: check affected versions and report to BTS
+CVE-2013-4289 [heap-based buffer overflows]
 	RESERVED
+	- openjpeg <unfixed>
+	TODO: check affected versions and report to BTS
 CVE-2013-4288
 	RESERVED
 CVE-2013-4287 [Algorithmic complexity vulnerability]




More information about the Secure-testing-commits mailing list