[Secure-testing-commits] r39807 - in data: CVE DLA

Salvatore Bonaccorso carnil at moszumanska.debian.org
Mon Feb 22 13:50:15 UTC 2016


Author: carnil
Date: 2016-02-22 13:50:15 +0000 (Mon, 22 Feb 2016)
New Revision: 39807

Modified:
   data/CVE/list
   data/DLA/list
Log:
CVE-2016-2533 assigned for one pillow issue

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2016-02-22 12:54:25 UTC (rev 39806)
+++ data/CVE/list	2016-02-22 13:50:15 UTC (rev 39807)
@@ -1196,13 +1196,11 @@
 	- libebml 1.3.3-1
 	NOTE: https://lists.matroska.org/pipermail/matroska-users/2015-October/006985.html
 	NOTE: https://github.com/Matroska-Org/libebml/commit/ababb64e0c792ad2a314245233db0833ba12036b
-CVE-2016-XXXX [Buffer overflow in Python-Pillow and PIL]
+CVE-2016-2533 [Buffer overflow in Python-Pillow and PIL]
 	- pillow 3.1.1-1
 	- python-imaging <removed>
-	[squeeze] - python-imaging 1.1.7-2+deb6u2
-	NOTE: workaround entry for DLA-422-1 until/if CVE assigned
 	NOTE: https://github.com/python-pillow/Pillow/pull/1706
-	NOTE: CVE Request: http://www.openwall.com/lists/oss-security/2016/02/02/5
+	NOTE: http://www.openwall.com/lists/oss-security/2016/02/02/5
 	NOTE: https://github.com/python-pillow/Pillow/commit/ae453aa18b66af54e7ff716f4ccb33adca60afd4
 CVE-2016-2221 [open redirect vulnerability]
 	RESERVED

Modified: data/DLA/list
===================================================================
--- data/DLA/list	2016-02-22 12:54:25 UTC (rev 39806)
+++ data/DLA/list	2016-02-22 13:50:15 UTC (rev 39807)
@@ -1,5 +1,5 @@
 [21 Feb 2016] DLA-422-1 python-imaging - security update
-	{CVE-2016-0775}
+	{CVE-2016-0775 CVE-2016-2533}
 	[squeeze] - python-imaging 1.1.7-2+deb6u2
 [20 Feb 2016] DLA-421-1 openssl - security update
 	{CVE-2015-3197}




More information about the Secure-testing-commits mailing list