[Secure-testing-commits] r41401 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Wed May 4 05:05:19 UTC 2016


Author: carnil
Date: 2016-05-04 05:05:19 +0000 (Wed, 04 May 2016)
New Revision: 41401

Modified:
   data/CVE/list
Log:
Reference workaround directly

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2016-05-04 05:02:21 UTC (rev 41400)
+++ data/CVE/list	2016-05-04 05:05:19 UTC (rev 41401)
@@ -1842,7 +1842,7 @@
 CVE-2016-3714 [Insufficient filtering for filename passed to delegate's command allows remote code execution during conversion of several file formats]
 	RESERVED
 	- imagemagick <unfixed>
-	NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2016-3714 has workaround
+	NOTE: Workaround: https://bugzilla.redhat.com/show_bug.cgi?id=1332492#c3
 	TODO: check if other packages are affected
 CVE-2016-3713
 	RESERVED




More information about the Secure-testing-commits mailing list