[Secure-testing-commits] r37672 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Thu Nov 12 19:34:53 UTC 2015


Author: carnil
Date: 2015-11-12 19:34:53 +0000 (Thu, 12 Nov 2015)
New Revision: 37672

Modified:
   data/CVE/list
Log:
Add libpng issue issue

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2015-11-12 18:06:27 UTC (rev 37671)
+++ data/CVE/list	2015-11-12 19:34:53 UTC (rev 37672)
@@ -1,3 +1,7 @@
+CVE-2015-XXXX [libpng buffer overflow in png_set_PLTE]
+	- libpng <unfixed>
+	NOTE: CVE Request: http://www.openwall.com/lists/oss-security/2015/11/12/2
+	TODO: check (should be fixed in 1.6.19, 1.5.24, 1.4.17, 1.2.54, and 1.0.64)
 CVE-2015-8105 (Cross-site scripting (XSS) vulnerability in program/js/app.js in ...)
 	TODO: check
 CVE-2015-XXXX [directory traversal in servefile]




More information about the Secure-testing-commits mailing list