[Secure-testing-commits] r38562 - data/CVE

security tracker role sectracker at moszumanska.debian.org
Sun Dec 27 21:10:11 UTC 2015


Author: sectracker
Date: 2015-12-27 21:10:11 +0000 (Sun, 27 Dec 2015)
New Revision: 38562

Modified:
   data/CVE/list
Log:
automatic update

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2015-12-27 21:01:16 UTC (rev 38561)
+++ data/CVE/list	2015-12-27 21:10:11 UTC (rev 38562)
@@ -1887,6 +1887,7 @@
 	RESERVED
 CVE-2015-8540 [underflow read in png_check_keyword in pngwutil.c]
 	RESERVED
+	{DLA-375-1}
 	- libpng <unfixed> (bug #807694)
 	NOTE: http://www.openwall.com/lists/oss-security/2015/12/10/6
 	NOTE: https://sourceforge.net/p/libpng/bugs/244/
@@ -3854,6 +3855,7 @@
 	NOTE: Rendered non-exploitable by toolchain hardening
 CVE-2015-8472 [Incomplete fix for CVE-2015-8126]
 	RESERVED
+	{DLA-375-1}
 	- libpng <unfixed> (bug #807112)
 	NOTE: Fixed in 1.6.20, 1.5.25, 1.4.18, 1.2.55, and 1.0.65
 	NOTE: https://github.com/glennrp/libpng/commit/7e1ca9ceba4e64259863efdd98bab9b55bdc0b9c
@@ -81048,6 +81050,7 @@
 CVE-2012-3426 (OpenStack Keystone before 2012.1.1, as used in OpenStack Folsom before ...)
 	- keystone 2012.1.1-1
 CVE-2012-3425 (The png_push_read_zTXt function in pngpread.c in libpng 1.0.x before ...)
+	{DLA-375-1}
 	- libpng 1.2.49-1 (low; bug #668082)
 	[squeeze] - libpng <no-dsa> (Minor issue)
 CVE-2012-3424 (The decode_credentials method in ...)




More information about the Secure-testing-commits mailing list