[Secure-testing-commits] r40784 - in data: . CVE

Moritz Muehlenhoff jmm at moszumanska.debian.org
Wed Apr 6 20:34:06 UTC 2016


Author: jmm
Date: 2016-04-06 20:34:06 +0000 (Wed, 06 Apr 2016)
New Revision: 40784

Modified:
   data/CVE/list
   data/dsa-needed.txt
Log:
add and take optipng


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2016-04-06 20:11:11 UTC (rev 40783)
+++ data/CVE/list	2016-04-06 20:34:06 UTC (rev 40784)
@@ -4581,10 +4581,9 @@
 	NOTE: https://github.com/jmacd/xdelta-devel/commit/ef93ff74203e030073b898c05e8b4860b5d09ef2
 	NOTE: http://www.openwall.com/lists/oss-security/2016/02/08/1
 CVE-2014-XXXX [LFI posting internal files externally abusing default parameter]
-	- tcpdf 6.2.12+dfsg-1 (bug #814030)
+	- tcpdf <undetermined> (bug #814030)
 	NOTE: https://sourceforge.net/p/tcpdf/bugs/1005/ (not public)
 	NOTE: According to upstream fixed in 6.2.0, but not details available
-	TODO: check
 CVE-2015-8808 [out-of-bound read in the parsing of gif files]
 	RESERVED
 	- graphicsmagick 1.3.21-2

Modified: data/dsa-needed.txt
===================================================================
--- data/dsa-needed.txt	2016-04-06 20:11:11 UTC (rev 40783)
+++ data/dsa-needed.txt	2016-04-06 20:34:06 UTC (rev 40784)
@@ -57,6 +57,8 @@
 --
 ntp
 --
+optipng (jmm)
+--
 openjpeg2 (jmm)
 --
 pdns/oldstable (Mike Gabriel)




More information about the Secure-testing-commits mailing list