[Secure-testing-commits] r40818 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Fri Apr 8 15:02:21 UTC 2016


Author: carnil
Date: 2016-04-08 15:02:21 +0000 (Fri, 08 Apr 2016)
New Revision: 40818

Modified:
   data/CVE/list
Log:
Update CVE-2016-3186/tiff information

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2016-04-08 11:25:55 UTC (rev 40817)
+++ data/CVE/list	2016-04-08 15:02:21 UTC (rev 40818)
@@ -1735,10 +1735,13 @@
 CVE-2016-3186 [buffer overflow in gif2tiff]
 	RESERVED
 	- tiff <unfixed> (bug #819972)
-	- tiff3 <removed>
+	[jessie] - tiff <no-dsa> (Minor issue)
+	[wheezy] - tiff <no-dsa> (Minor issue)
+	- tiff3 <removed> (unimportant)
 	NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=1319666
 	NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=1319503
-	TODO: check versions, furthermore check, since only in gif2tiff, if no-dsa for the affected suites
+	NOTE: http://bugzilla.maptools.org/show_bug.cgi?id=2536
+	NOTE: Proposed patch from Red Hat: https://bugzilla.redhat.com/attachment.cgi?id=1144235&action=diff
 CVE-2016-3185 [Type Confusion Vulnerability - SOAP / make_http_soap_request()]
 	RESERVED
 	- php7.0 7.0.4-1




More information about the Secure-testing-commits mailing list