[Secure-testing-commits] r25798 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Thu Feb 20 05:29:31 UTC 2014


Author: carnil
Date: 2014-02-20 05:29:31 +0000 (Thu, 20 Feb 2014)
New Revision: 25798

Modified:
   data/CVE/list
Log:
Add CVE-2014-2030/imagemagick

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2014-02-20 05:21:23 UTC (rev 25797)
+++ data/CVE/list	2014-02-20 05:29:31 UTC (rev 25798)
@@ -5,6 +5,10 @@
 	TODO: check
 CVE-2014-XXXX [incomplete fix for CVE-2013-6466 DoS in openSwan]
 	- openswan <unfixed>
+CVE-2014-2030
+	- imagemagick <unfixed>
+	NOTE: for the issue in newer imagemagick versions using "L%06ld" string.
+	TODO: check
 CVE-2014-2027 [remote code execution via php unserialize]
 	- egroupware <removed>
 CVE-2014-2015 [denial of service in rlm_pap hash processing]




More information about the Secure-testing-commits mailing list