[Secure-testing-commits] r42538 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Wed Jun 15 04:29:35 UTC 2016


Author: carnil
Date: 2016-06-15 04:29:35 +0000 (Wed, 15 Jun 2016)
New Revision: 42538

Modified:
   data/CVE/list
Log:
Add new tiff issues, left TODO item, needs marking as no-dsa were appropriate

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2016-06-15 04:14:54 UTC (rev 42537)
+++ data/CVE/list	2016-06-15 04:29:35 UTC (rev 42538)
@@ -300,22 +300,46 @@
 	NOTE: https://github.com/wireshark/wireshark/commit/b4d16b4495b732888e12baf5b8a7e9bf2665e22b
 CVE-2016-5324
 	RESERVED
-CVE-2016-5323
+CVE-2016-5323 [tiffcrop _TIFFFax3fillruns(): divide by zero]
 	RESERVED
-CVE-2016-5322
+	- tiff <unfixed>
+	- tiff3 <removed>
+	TODO: check
+CVE-2016-5322 [extractContigSamplesBytes:  out-of-bounds read]
 	RESERVED
-CVE-2016-5321
+	- tiff <unfixed>
+	- tiff3 <removed>
+	TODO: check
+CVE-2016-5321 [DumpModeDecode(): Ddos]
 	RESERVED
-CVE-2016-5320
+	- tiff <unfixed>
+	- tiff3 <removed>
+	TODO: check
+CVE-2016-5320 [rgb2ycbcr: command excution]
 	RESERVED
-CVE-2016-5317
+	- tiff <unfixed>
+	- tiff3 <removed>
+	TODO: check
+CVE-2016-5317 [GNOME nautilus: crash occurs when generating a thumbnail for a crafted TIFF image]
 	RESERVED
-CVE-2016-5316
+	- tiff <unfixed>
+	- tiff3 <removed>
+	TODO: check, disputable that this actually would be as well a nautilus issue
+CVE-2016-5316 [tif_pixarlog.c:  PixarLogCleanup() Segmentation fault]
 	RESERVED
-CVE-2016-5315
+	- tiff <unfixed>
+	- tiff3 <removed>
+	TODO: check
+CVE-2016-5315 [tif_dir.c: setByteArray() Read access violation]
 	RESERVED
-CVE-2016-5314
+	- tiff <unfixed>
+	- tiff3 <removed>
+	TODO: check
+CVE-2016-5314 [PixarLogDecode() out-of-bound writes]
 	RESERVED
+	- tiff <unfixed>
+	- tiff3 <removed>
+	TODO: check
 CVE-2016-5313
 	RESERVED
 CVE-2016-5312




More information about the Secure-testing-commits mailing list