[Secure-testing-commits] r31186 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Wed Jan 7 19:20:20 UTC 2015


Author: carnil
Date: 2015-01-07 19:20:20 +0000 (Wed, 07 Jan 2015)
New Revision: 31186

Modified:
   data/CVE/list
Log:
exiv2: only affects versions >= 0.24

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2015-01-07 19:16:32 UTC (rev 31185)
+++ data/CVE/list	2015-01-07 19:20:20 UTC (rev 31186)
@@ -301,6 +301,8 @@
 	NOTE: https://github.com/svn2github/zabbix/commit/984bd3bec2d6ca5a80104a5574d19b7f4d04f24b
 CVE-2014-9449 (Buffer overflow in the RiffVideo::infoTagsHandler function in ...)
 	- exiv2 <unfixed> (bug #773846)
+	[wheezy] - exiv2 <not-affected> (Vulnerable code not present)
+	[squeeze] - exiv2 <not-affected> (Vulnerable code not present)
 	NOTE: http://dev.exiv2.org/issues/960
 	NOTE: http://dev.exiv2.org/projects/exiv2/repository/diff?rev=3264&rev_to=3263
 CVE-2014-9447 (Directory traversal vulnerability in the read_long_names function in ...)




More information about the Secure-testing-commits mailing list