[Secure-testing-commits] r43964 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Fri Aug 12 20:49:30 UTC 2016


Author: carnil
Date: 2016-08-12 20:49:30 +0000 (Fri, 12 Aug 2016)
New Revision: 43964

Modified:
   data/CVE/list
Log:
Add note and TODO for CVE-2016-6520

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2016-08-12 20:38:02 UTC (rev 43963)
+++ data/CVE/list	2016-08-12 20:49:30 UTC (rev 43964)
@@ -581,6 +581,8 @@
 	RESERVED
 	- imagemagick <unfixed> (bug #833485)
 	NOTE: Fixed by: https://github.com/ImageMagick/ImageMagick/commit/76401e172ea3a55182be2b8e2aca4d07270f6da6
+	NOTE: According to https://www.imagemagick.org/discourse-server/viewtopic.php?f=3&t=30259&p=136359#p136359 only ImageMagick 7 specific?
+	TODO: check
 CVE-2016-6516 (Race condition in the ioctl_file_dedupe_range function in fs/ioctl.c ...)
 	- linux <unfixed>
 	[jessie] - linux <not-affected> (Vulnerable code introduced later)




More information about the Secure-testing-commits mailing list