[Secure-testing-commits] r37013 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Tue Oct 6 06:59:13 UTC 2015


Author: carnil
Date: 2015-10-06 06:59:13 +0000 (Tue, 06 Oct 2015)
New Revision: 37013

Modified:
   data/CVE/list
Log:
Add temporary item for audiofile

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2015-10-06 06:56:12 UTC (rev 37012)
+++ data/CVE/list	2015-10-06 06:59:13 UTC (rev 37013)
@@ -1,3 +1,7 @@
+CVE-2015-XXXX [When changing both sample format and number of channels, data gets corrupted; if new sample format smaller than old, possible buffer overflow]
+	- audiofile <unfixed>
+	NOTE: CVE Request: http://www.openwall.com/lists/oss-security/2015/10/06/2
+	TODO: check
 CVE-2015-XXXX [gvfsd-dav: null pointer dereference if server response is not escaped]
 	- gvfs <unfixed>
 	NOTE: CVE Request: http://www.openwall.com/lists/oss-security/2015/10/06/3




More information about the Secure-testing-commits mailing list