[Secure-testing-commits] r25944 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Mon Mar 3 18:58:03 UTC 2014


Author: carnil
Date: 2014-03-03 18:58:03 +0000 (Mon, 03 Mar 2014)
New Revision: 25944

Modified:
   data/CVE/list
Log:
Add fixed version for 3 imagemagick issues

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2014-03-03 18:56:17 UTC (rev 25943)
+++ data/CVE/list	2014-03-03 18:58:03 UTC (rev 25944)
@@ -397,7 +397,7 @@
 	NOTE: https://github.com/samboy/MaraDNS/commit/f015495d221f1c2b2f10db38e87cecf3839d6093
 CVE-2014-2030
 	RESERVED
-	- imagemagick <unfixed> (bug #740250)
+	- imagemagick 8:6.7.7.10+dfsg-1 (bug #740250)
 	NOTE: for the issue in newer imagemagick versions using "L%06ld" string.
 CVE-2014-2029 [remote code execution / information leak]
 	RESERVED
@@ -426,7 +426,7 @@
 	NOTE: introduced by https://www.gitorious.org/gnutls/gnutls/commit/60ee8a0eb9975d123002b1cffbefd60a8cd5fae6
 CVE-2014-1958 [PSD Images Processing RLE Decoding Buffer Overflow Vulnerability]
 	RESERVED
-	- imagemagick <unfixed> (bug #740250)
+	- imagemagick 8:6.7.7.10+dfsg-1 (bug #740250)
 	NOTE: http://secunia.com/advisories/56844/
 	NOTE: http://trac.imagemagick.org/changeset/14801
 CVE-2014-XXXX [phpbb3: denial of service vulnerability]
@@ -445,7 +445,7 @@
 	NOTE: https://launchpad.net/bugs/1275062
 CVE-2014-1947 [Buffer overflow vulnerability]
 	RESERVED
-	- imagemagick <unfixed> (bug #740250)
+	- imagemagick 8:6.7.7.10+dfsg-1 (bug #740250)
 	NOTE: http://trac.imagemagick.org/changeset/13736
 CVE-2014-1943 (Fine Free file before 5.17 allows context-dependent attackers to cause ...)
 	{DSA-2868-1 DSA-2861-1}




More information about the Secure-testing-commits mailing list