[Secure-testing-commits] r31186 - data/CVE
Salvatore Bonaccorso
carnil at moszumanska.debian.org
Wed Jan 7 19:20:20 UTC 2015
Author: carnil
Date: 2015-01-07 19:20:20 +0000 (Wed, 07 Jan 2015)
New Revision: 31186
Modified:
data/CVE/list
Log:
exiv2: only affects versions >= 0.24
Modified: data/CVE/list
===================================================================
--- data/CVE/list 2015-01-07 19:16:32 UTC (rev 31185)
+++ data/CVE/list 2015-01-07 19:20:20 UTC (rev 31186)
@@ -301,6 +301,8 @@
NOTE: https://github.com/svn2github/zabbix/commit/984bd3bec2d6ca5a80104a5574d19b7f4d04f24b
CVE-2014-9449 (Buffer overflow in the RiffVideo::infoTagsHandler function in ...)
- exiv2 <unfixed> (bug #773846)
+ [wheezy] - exiv2 <not-affected> (Vulnerable code not present)
+ [squeeze] - exiv2 <not-affected> (Vulnerable code not present)
NOTE: http://dev.exiv2.org/issues/960
NOTE: http://dev.exiv2.org/projects/exiv2/repository/diff?rev=3264&rev_to=3263
CVE-2014-9447 (Directory traversal vulnerability in the read_long_names function in ...)
More information about the Secure-testing-commits
mailing list