[Secure-testing-commits] r26125 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Sat Mar 15 09:27:51 UTC 2014


Author: carnil
Date: 2014-03-15 09:27:51 +0000 (Sat, 15 Mar 2014)
New Revision: 26125

Modified:
   data/CVE/list
Log:
Add CVE-2014-2497/php5

NOTE: please double check this entry

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2014-03-15 07:21:07 UTC (rev 26124)
+++ data/CVE/list	2014-03-15 09:27:51 UTC (rev 26125)
@@ -1,3 +1,8 @@
+CVE-2014-2497 [gd: NULL pointer dereference may cause denial of service]
+	- php5 <undetermined>
+	[wheezy] - php5 <not-affected> (imagecreatefromxpm function not in used gd extension)
+	[squeeze] - php5 <not-affected> (imagecreatefromxpm function not in used gd extension)
+	TODO: check unstable
 CVE-2014-2496
 	RESERVED
 CVE-2014-2495




More information about the Secure-testing-commits mailing list