[Secure-testing-commits] r31256 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Sat Jan 10 21:29:33 UTC 2015


Author: carnil
Date: 2015-01-10 21:29:33 +0000 (Sat, 10 Jan 2015)
New Revision: 31256

Modified:
   data/CVE/list
Log:
Update CVE entries for libpng issues

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2015-01-10 21:10:16 UTC (rev 31255)
+++ data/CVE/list	2015-01-10 21:29:33 UTC (rev 31256)
@@ -4,6 +4,9 @@
 	- kgb <unfixed> (bug #774989)
 CVE-2015-XXXX [directory traversal]
 	- pigz <unfixed> (bug #774978)
+CVE-2015-0973
+	- libpng <not-affected> (Affects 1.5.x and 1.6.x series)
+	NOTE: http://tfpwn.com/files/libpng_heap_overflow_1.6.15.txt
 CVE-2015-0922 (McAfee ePolicy Orchestrator (ePO) before 4.6.9 and 5.x before 5.1.2 ...)
 	NOT-FOR-US: McAfee ePolicy Orchestrator
 CVE-2015-0921 (XML external entity (XXE) vulnerability in the Server Task Log in ...)
@@ -1261,7 +1264,6 @@
 CVE-2014-9495 [Heap Overflow]
 	RESERVED
 	- libpng <not-affected> (Affects 1.5.x and 1.6.x series)
-	NOTE: http://tfpwn.com/files/libpng_heap_overflow_1.6.15.txt
 	NOTE: http://sourceforge.net/p/png-mng/mailman/message/33173461/
 CVE-2014-9465
 	RESERVED




More information about the Secure-testing-commits mailing list