[Secure-testing-commits] r44149 - data/CVE
Moritz Muehlenhoff
jmm at moszumanska.debian.org
Thu Aug 25 21:00:01 UTC 2016
Author: jmm
Date: 2016-08-25 21:00:00 +0000 (Thu, 25 Aug 2016)
New Revision: 44149
Modified:
data/CVE/list
Log:
mark several CVE-less issues as fixed in jessie
Modified: data/CVE/list
===================================================================
--- data/CVE/list 2016-08-25 20:49:12 UTC (rev 44148)
+++ data/CVE/list 2016-08-25 21:00:00 UTC (rev 44149)
@@ -649,9 +649,11 @@
RESERVED
CVE-2016-XXXX [Buffer overflow in bmp file reader]
- imagemagick <unfixed> (bug #834504)
+ [jessie] - imagemagick 8:6.8.9.9-5+deb8u4
NOTE: https://github.com/ImageMagick/ImageMagick/commit/4cc6ec8a4197d4c008577127736bf7985d632323
CVE-2016-XXXX [Out-of-bound in exif (jpeg) reader]
- imagemagick <unfixed> (bug #834501)
+ [jessie] - imagemagick 8:6.8.9.9-5+deb8u4
CVE-2016-6792
RESERVED
CVE-2016-6791
@@ -898,6 +900,7 @@
RESERVED
CVE-2016-XXXX [Double free]
- imagemagick <unfixed> (bug #834183)
+ [jessie] - imagemagick 8:6.8.9.9-5+deb8u4
NOTE: https://www.imagemagick.org/discourse-server/viewtopic.php?f=3&t=30245
CVE-2016-6833 [net: vmxnet3: use after free while writing]
RESERVED
@@ -1013,18 +1016,23 @@
RESERVED
CVE-2016-XXXX [RLE check for pixel offset less than 0]
- imagemagick <unfixed> (bug #833744)
+ [jessie] - imagemagick 8:6.8.9.9-5+deb8u4
NOTE: https://github.com/ImageMagick/ImageMagick/commit/73fb0aac5b958521e1511e179ecc0ad49f70ebaf
CVE-2016-XXXX [Segfault in ReadRLEImage]
- imagemagick <unfixed> (bug #833743)
+ [jessie] - imagemagick 8:6.8.9.9-5+deb8u4
NOTE: https://github.com/ImageMagick/ImageMagick/commit/3e9165285eda6e1bb71172031d3048b51bb443a4
CVE-2016-XXXX [Coder path transversal]
- imagemagick <unfixed> (bug #833735)
+ [jessie] - imagemagick 8:6.8.9.9-5+deb8u4
NOTE: https://github.com/ImageMagick/ImageMagick/commit/fc6080f1321fd21e86ef916195cc110b05d9effb
CVE-2016-XXXX [memory leak]
- imagemagick <unfixed> (bug #833732)
+ [jessie] - imagemagick 8:6.8.9.9-5+deb8u4
NOTE: https://github.com/ImageMagick/ImageMagick/commit/fc6080f1321fd21e86ef916195cc110b05d9effb
CVE-2016-XXXX [Buffer overflow in draw.c]
- imagemagick <unfixed> (bug #833730)
+ [jessie] - imagemagick 8:6.8.9.9-5+deb8u4
NOTE: https://github.com/ImageMagick/ImageMagick/commit/989f9f88ea6db09b99d25586e912c921c0da8d3f
CVE-2016-6887 [... wrong calculation result ...]
RESERVED
@@ -1142,9 +1150,11 @@
NOT-FOR-US: Samsung
CVE-2016-XXXX [off-by-one error leading to segfault]
- imagemagick <unfixed> (bug #832455)
+ [jessie] - imagemagick 8:6.8.9.9-5+deb8u4
NOTE: https://github.com/ImageMagick/ImageMagick/commit/a54fe0e8600eaf3dc6fe717d3c0398001507f723
CVE-2016-XXXX [out-of-bounds read in coders/psd.c]
- imagemagick <unfixed> (bug #832457)
+ [jessie] - imagemagick 8:6.8.9.9-5+deb8u4
NOTE: https://bugs.launchpad.net/bugs/1533442
NOTE: https://github.com/ImageMagick/ImageMagick/issues/83
NOTE: https://github.com/ImageMagick/ImageMagick/commit/198fffab4daf8aea88badd9c629350e5b26ec32f
@@ -1154,12 +1164,14 @@
NOTE: CVE Request: http://www.openwall.com/lists/oss-security/2016/08/07/1
CVE-2016-XXXX [rle file handling for corrupted file]
- imagemagick <unfixed> (bug #832461)
+ [jessie] - imagemagick 8:6.8.9.9-5+deb8u4
NOTE: https://bugs.launchpad.net/bugs/1533445
NOTE: https://github.com/ImageMagick/ImageMagick/issues/82
NOTE: https://github.com/ImageMagick/ImageMagick/commit/2ad6d33493750a28a5a655d319a8e0b16c392de1
NOTE: CVE Request: http://www.openwall.com/lists/oss-security/2016/08/07/1
CVE-2016-XXXX [buffer overflow in sun file handling]
- imagemagick <unfixed> (bug #832464)
+ [jessie] - imagemagick 8:6.8.9.9-5+deb8u4
NOTE: http://www.imagemagick.org/discourse-server/viewtopic.php?f=3&t=26838
NOTE: https://github.com/ImageMagick/ImageMagick/commit/78f82d9d1c2944725a279acd573a22168dc6e22a
NOTE: https://github.com/ImageMagick/ImageMagick/commit/bd96074b254c6607a0f7731e59f923ad19d5a46d
@@ -1167,6 +1179,7 @@
NOTE: CVE Request: http://www.openwall.com/lists/oss-security/2016/08/07/1
CVE-2016-XXXX [potential DOS in sun file handling due to malformed files]
- imagemagick <unfixed> (bug #832465)
+ [jessie] - imagemagick 8:6.8.9.9-5+deb8u4
NOTE: http://www.imagemagick.org/discourse-server/viewtopic.php?f=3&t=26857
NOTE: https://github.com/ImageMagick/ImageMagick/commit/b8f17d08b7418204bf8a05a5c24e87b2fc395b75
NOTE: https://github.com/ImageMagick/ImageMagick/commit/1aa0c6dab6dcef4d9bc3571866ae1c1ddbec7d8f
@@ -1175,6 +1188,7 @@
NOTE: CVE Request: http://www.openwall.com/lists/oss-security/2016/08/07/1
CVE-2016-XXXX [out of bunds problem in rle, pict, viff and sun files]
- imagemagick <unfixed> (bug #832467)
+ [jessie] - imagemagick 8:6.8.9.9-5+deb8u4
NOTE: https://bugs.launchpad.net/bugs/1533452
NOTE: https://github.com/ImageMagick/ImageMagick/issues/77
NOTE: https://bugs.launchpad.net/bugs/1533449
@@ -1186,24 +1200,28 @@
NOTE: CVE Request: http://www.openwall.com/lists/oss-security/2016/08/07/1
CVE-2016-XXXX [heap overflow in hdr file handling]
- imagemagick <unfixed> (bug #832469)
+ [jessie] - imagemagick 8:6.8.9.9-5+deb8u4
NOTE: https://bugs.launchpad.net/bugs/1537213
NOTE: https://github.com/ImageMagick/ImageMagick/issues/90
NOTE: https://github.com/ImageMagick/ImageMagick/commit/14e606db148d6ebcaae20f1e1d6d71903ca4a556
NOTE: CVE Request: http://www.openwall.com/lists/oss-security/2016/08/07/1
CVE-2016-XXXX [heap buffer overflow in psd file handling]
- imagemagick <unfixed> (bug #832474)
+ [jessie] - imagemagick 8:6.8.9.9-5+deb8u4
NOTE: https://bugs.launchpad.net/bugs/1537418
NOTE: https://github.com/ImageMagick/ImageMagick/issues/92
NOTE: https://github.com/ImageMagick/ImageMagick/commit/30eec879c8b446b0ea9a3bb0da1a441cc8482bc4
NOTE: CVE Request: http://www.openwall.com/lists/oss-security/2016/08/07/1
CVE-2016-XXXX [out of bound access for malformed psd file]
- imagemagick <unfixed> (bug #832475)
+ [jessie] - imagemagick 8:6.8.9.9-5+deb8u4
NOTE: https://bugs.launchpad.net/bugs/1537419
NOTE: https://github.com/ImageMagick/ImageMagick/issues/93
NOTE: https://github.com/ImageMagick/ImageMagick/commit/4b1b9c0522628887195bad3a6723f7000b0c9a58
NOTE: CVE Request: http://www.openwall.com/lists/oss-security/2016/08/07/1
CVE-2016-XXXX [meta file out of bound access]
- imagemagick <unfixed> (bug #832478)
+ [jessie] - imagemagick 8:6.8.9.9-5+deb8u4
NOTE: https://bugs.launchpad.net/bugs/1537420
NOTE: https://github.com/ImageMagick/ImageMagick/issues/96
NOTE: https://github.com/ImageMagick/ImageMagick/commit/f8c318d462270b03e77f082e2a3a32867cacd3c6
@@ -1211,12 +1229,14 @@
NOTE: CVE Request: http://www.openwall.com/lists/oss-security/2016/08/07/1
CVE-2016-XXXX [heap buffer overflow in psd file coder]
- imagemagick <unfixed> (bug #832480)
+ [jessie] - imagemagick 8:6.8.9.9-5+deb8u4
NOTE: https://bugs.launchpad.net/bugs/1537424
NOTE: https://github.com/ImageMagick/ImageMagick/issues/98
NOTE: https://github.com/ImageMagick/ImageMagick/commit/5f16640725b1225e6337c62526e6577f0f88edb8
NOTE: CVE Request: http://www.openwall.com/lists/oss-security/2016/08/07/1
CVE-2016-XXXX [out of bound access in wpg file coder]
- imagemagick <unfixed> (bug #832482)
+ [jessie] - imagemagick 8:6.8.9.9-5+deb8u4
NOTE: https://bugs.launchpad.net/bugs/1539050
NOTE: https://bugs.launchpad.net/bugs/1542115
NOTE: https://github.com/ImageMagick/ImageMagick/issues/102
@@ -1227,12 +1247,14 @@
NOTE: CVE Request: http://www.openwall.com/lists/oss-security/2016/08/07/1
CVE-2016-XXXX [out of bound access for viff file coder]
- imagemagick <unfixed> (bug #832483)
+ [jessie] - imagemagick 8:6.8.9.9-5+deb8u4
NOTE: https://bugs.launchpad.net/bugs/1537425
NOTE: https://github.com/ImageMagick/ImageMagick/issues/99
NOTE: https://github.com/ImageMagick/ImageMagick/commit/ca0c886abd6d3ef335eb74150cd23b89ebd17135
NOTE: CVE Request: http://www.openwall.com/lists/oss-security/2016/08/07/1
CVE-2016-XXXX [out of bound access in xcf file coder]
- imagemagick <unfixed> (bug #832504)
+ [jessie] - imagemagick 8:6.8.9.9-5+deb8u4
NOTE: https://bugs.launchpad.net/bugs/1539051
NOTE: https://bugs.launchpad.net/bugs/1539052
NOTE: https://github.com/ImageMagick/ImageMagick/issues/104
@@ -1241,6 +1263,7 @@
NOTE: CVE Request: http://www.openwall.com/lists/oss-security/2016/08/07/1
CVE-2016-XXXX [out of bound in quantum handling]
- imagemagick <unfixed> (bug #832506)
+ [jessie] - imagemagick 8:6.8.9.9-5+deb8u4
NOTE: https://bugs.launchpad.net/bugs/1539067
NOTE: https://bugs.launchpad.net/bugs/1539053
NOTE: https://github.com/ImageMagick/ImageMagick/issues/105
@@ -1251,69 +1274,81 @@
NOTE: CVE Request: http://www.openwall.com/lists/oss-security/2016/08/07/1
CVE-2016-XXXX [pbd file out of bound access]
- imagemagick <unfixed> (bug #832633)
+ [jessie] - imagemagick 8:6.8.9.9-5+deb8u4
NOTE: https://bugs.launchpad.net/bugs/1539061
NOTE: https://bugs.launchpad.net/bugs/1542112
NOTE: https://github.com/ImageMagick/ImageMagick/issues/107
NOTE: CVE Request: http://www.openwall.com/lists/oss-security/2016/08/07/1
CVE-2016-XXXX [Fix handling of corrupted psd file]
- imagemagick <unfixed> (bug #832776)
+ [jessie] - imagemagick 8:6.8.9.9-5+deb8u4
NOTE: https://bugs.launchpad.net/bugs/1539066
NOTE: https://github.com/ImageMagick/ImageMagick/issues/109
NOTE: CVE Request: http://www.openwall.com/lists/oss-security/2016/08/07/1
CVE-2016-XXXX [wpg file out of bound for corrupted file]
- imagemagick <unfixed> (bug #832780)
+ [jessie] - imagemagick 8:6.8.9.9-5+deb8u4
NOTE: https://bugs.launchpad.net/bugs/1542114
NOTE: https://github.com/ImageMagick/ImageMagick/issues/120
NOTE: https://github.com/ImageMagick/ImageMagick/commit/bef1e4f637d8f665bc133a9c6d30df08d983bc3a
NOTE: CVE Request: http://www.openwall.com/lists/oss-security/2016/08/07/1
CVE-2016-XXXX [out of bound access in generic decoder]
- imagemagick <unfixed> (bug #832785)
+ [jessie] - imagemagick 8:6.8.9.9-5+deb8u4
NOTE: https://bugs.launchpad.net/bugs/1542785
NOTE: https://github.com/ImageMagick/ImageMagick/issues/126
NOTE: https://github.com/ImageMagick/ImageMagick/commit/430403b0029b37decf216d57f810899cab2317dd
NOTE: CVE Request: http://www.openwall.com/lists/oss-security/2016/08/07/1
CVE-2016-XXXX [out of bound access for corrupted psd file]
- imagemagick <unfixed> (bug #832787)
+ [jessie] - imagemagick 8:6.8.9.9-5+deb8u4
NOTE: https://bugs.launchpad.net/bugs/1545180
NOTE: https://github.com/ImageMagick/ImageMagick/issues/128
NOTE: CVE Request: http://www.openwall.com/lists/oss-security/2016/08/07/1
CVE-2016-XXXX [SEGV reported in corrupted profile handling]
- imagemagick <unfixed> (bug #832789)
+ [jessie] - imagemagick 8:6.8.9.9-5+deb8u4
NOTE: https://bugs.launchpad.net/bugs/1545367
NOTE: https://github.com/ImageMagick/ImageMagick/issues/130
NOTE: https://github.com/ImageMagick/ImageMagick/commit/478cce544fdf1de882d78381768458f397964453
NOTE: CVE Request: http://www.openwall.com/lists/oss-security/2016/08/07/1
CVE-2016-XXXX [out of bound access for corrupted pdb file]
- imagemagick <unfixed> (bug #832791)
+ [jessie] - imagemagick 8:6.8.9.9-5+deb8u4
NOTE: https://bugs.launchpad.net/bugs/1553366
NOTE: https://github.com/ImageMagick/ImageMagick/issues/143
NOTE: https://github.com/ImageMagick/ImageMagick/commit/424d40ebfcde48bb872eba75179d3d73704fdf1f
NOTE: CVE Request: http://www.openwall.com/lists/oss-security/2016/08/07/1
CVE-2016-XXXX [SIGABRT for corrupted pdb file]
- imagemagick <unfixed> (bug #832793)
+ [jessie] - imagemagick 8:6.8.9.9-5+deb8u4
NOTE: https://bugs.launchpad.net/bugs/1556273
NOTE: https://github.com/ImageMagick/ImageMagick/issues/148
NOTE: https://github.com/ImageMagick/ImageMagick/commit/53c1dcd34bed85181b901bfce1a2322f85a59472
NOTE: CVE Request: http://www.openwall.com/lists/oss-security/2016/08/07/1
CVE-2016-XXXX [DOS due to corrupted DDS files]
- imagemagick <unfixed> (bug #832944)
+ [jessie] - imagemagick 8:6.8.9.9-5+deb8u4
NOTE: http://www.imagemagick.org/discourse-server/viewtopic.php?f=3&t=26861
NOTE: https://github.com/ImageMagick/ImageMagick/commit/93ab016764c7f787829d9065440d86f5609765110
NOTE: https://github.com/ImageMagick/ImageMagick/commit/9b428b7af688fe319320aed15f2b94281d1e37b4
NOTE: CVE Request: http://www.openwall.com/lists/oss-security/2016/08/07/1
CVE-2016-XXXX [DOS due to corrupted DDS files]
- imagemagick <unfixed> (bug #832942)
+ [jessie] - imagemagick 8:6.8.9.9-5+deb8u4
NOTE: https://github.com/ImageMagick/ImageMagick/commit/21eae25a8db5fdcd112dbcfcd9e5c37e32d32e2f
NOTE: https://github.com/ImageMagick/ImageMagick/commit/d7325bac173492b358417a0ad49fabad44447d52
NOTE: https://github.com/ImageMagick/ImageMagick/commit/504ada82b6fa38a30c846c1c29116af7290decb2
NOTE: CVE Request: http://www.openwall.com/lists/oss-security/2016/08/07/1
CVE-2016-XXXX [potential DOS by not releasing memory]
- imagemagick <unfixed> (bug #833101)
+ [jessie] - imagemagick 8:6.8.9.9-5+deb8u4
NOTE: Fixed by: https://github.com/ImageMagick/ImageMagick/commit/4e81ce8b07219c69a9aeccb0f7f7b927ca6db74c
NOTE: http://www.imagemagick.org/discourse-server/viewtopic.php?f=2&t=28946
NOTE: CVE Request: http://www.openwall.com/lists/oss-security/2016/08/07/1
CVE-2016-XXXX [writing to rgf format aborts]
- imagemagick <unfixed> (bug #827643)
+ [jessie] - imagemagick 8:6.8.9.9-5+deb8u4
NOTE: https://bugs.launchpad.net/bugs/1594060
NOTE: https://github.com/ImageMagick/ImageMagick/pull/223
NOTE: CVE Request: http://www.openwall.com/lists/oss-security/2016/08/07/1
More information about the Secure-testing-commits
mailing list