[Secure-testing-commits] r41241 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Wed Apr 27 17:02:58 UTC 2016


Author: carnil
Date: 2016-04-27 17:02:58 +0000 (Wed, 27 Apr 2016)
New Revision: 41241

Modified:
   data/CVE/list
Log:
Group by source package name

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2016-04-27 16:15:28 UTC (rev 41240)
+++ data/CVE/list	2016-04-27 17:02:58 UTC (rev 41241)
@@ -1405,8 +1405,8 @@
 CVE-2016-3625 [Out-of-bounds Read occurred in tif_read.c:545 or tif_read.c:402 or tif_read.c:560 in tiff2bw]
 	RESERVED
 	- tiff <unfixed>
+	[jessie] - tiff <no-dsa> (Minor issue)
 	- tiff3 <removed>
-	[jessie] - tiff <no-dsa> (Minor issue)
 CVE-2016-3624 [Out-of-bounds Write occurred in function cvtClump in rgb2ycbcr]
 	RESERVED
 	- tiff <unfixed>
@@ -1415,8 +1415,8 @@
 CVE-2016-3623 [Divide By Zero in the rgb2ycbcr tool]
 	RESERVED
 	- tiff <unfixed>
+	[jessie] - tiff <no-dsa> (Minor issue)
 	- tiff3 <removed>
-	[jessie] - tiff <no-dsa> (Minor issue)
 CVE-2016-3622 [Division by zero in fpAcc function]
 	RESERVED
 	- tiff <unfixed> (low; bug #820365)
@@ -42541,8 +42541,8 @@
 	NOTE: https://git.samba.org/?p=rsync.git;a=commit;h=eac858085e3ac94ec0ab5061d11f52652c90a869
 	NOTE: https://lists.samba.org/archive/rsync/2015-May/030123.html
 CVE-2014-8242 (librsync before 1.0.0 uses a truncated MD4 checksum to match blocks, ...)
+	[experimental] - librsync 1.0.0-1~exp1
 	- librsync <unfixed> (low; bug #776246)
-	[experimental] - librsync 1.0.0-1~exp1
 	[jessie] - librsync <no-dsa> (Minor issue, too instrusive to backport)
 	[wheezy] - librsync <no-dsa> (Minor issue, too instrusive to backport)
 	[squeeze] - librsync <no-dsa> (Minor issue, too instrusive to backport)




More information about the Secure-testing-commits mailing list