[Secure-testing-commits] r40446 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Thu Mar 17 19:07:19 UTC 2016


Author: carnil
Date: 2016-03-17 19:07:19 +0000 (Thu, 17 Mar 2016)
New Revision: 40446

Modified:
   data/CVE/list
Log:
Add CVE-2016-3190/cairo

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2016-03-17 18:50:00 UTC (rev 40445)
+++ data/CVE/list	2016-03-17 19:07:19 UTC (rev 40446)
@@ -410,8 +410,11 @@
 	RESERVED
 CVE-2016-3191
 	RESERVED
-CVE-2016-3190
+CVE-2016-3190 [Out-of-bounds read in _fill_xrgb32_lerp_opaque_spans]
 	RESERVED
+	- cairo 1.14.2-2
+	NOTE: https://cgit.freedesktop.org/cairo/patch/src/cairo-image-compositor.c?id=5c82d91a5e15d29b1489dcb413b24ee7fdf59934
+	TODO: check indigo and texlive-bin enbedding it
 CVE-2016-3189
 	RESERVED
 CVE-2016-3188




More information about the Secure-testing-commits mailing list