[Secure-testing-commits] r46934 - data/CVE

Nicholas Luedtke nluedtke-guest at moszumanska.debian.org
Fri Dec 9 15:51:02 UTC 2016


Author: nluedtke-guest
Date: 2016-12-09 15:51:02 +0000 (Fri, 09 Dec 2016)
New Revision: 46934

Modified:
   data/CVE/list
Log:
Add CVE-2016-958{0,1}/openjpeg2

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2016-12-09 15:19:55 UTC (rev 46933)
+++ data/CVE/list	2016-12-09 15:51:02 UTC (rev 46934)
@@ -7709,10 +7709,18 @@
 	RESERVED
 CVE-2016-9582
 	RESERVED
-CVE-2016-9581
+CVE-2016-9581 [infinite loop in tiftoimage resulting into heap buffer overflow in convert_32s_C1P1]
 	RESERVED
-CVE-2016-9580
+	- openjpeg2 <unfixed>
+	NOTE: https://github.com/uclouvain/openjpeg/issues/872
+	NOTE: Fixed by: https://github.com/szukw000/openjpeg/commit/cadff5fb6e73398de26a92e96d3d7cac893af255
+	TODO: Check affected versions
+CVE-2016-9580 [integer overflow in tiftoimage resulting into heap buffer overflow]
 	RESERVED
+	- openjpeg2 <unfixed>
+	NOTE: https://github.com/uclouvain/openjpeg/issues/871
+	NOTE: Fixed by: https://github.com/szukw000/openjpeg/commit/cadff5fb6e73398de26a92e96d3d7cac893af255
+	TODO: Check affected versions
 CVE-2016-9579
 	RESERVED
 CVE-2016-9578




More information about the Secure-testing-commits mailing list