[Secure-testing-commits] r42045 - data/CVE
Salvatore Bonaccorso
carnil at moszumanska.debian.org
Thu May 26 14:08:36 UTC 2016
Author: carnil
Date: 2016-05-26 14:08:36 +0000 (Thu, 26 May 2016)
New Revision: 42045
Modified:
data/CVE/list
Log:
Mark issue for libgd as unimportant
Modified: data/CVE/list
===================================================================
--- data/CVE/list 2016-05-26 14:04:50 UTC (rev 42044)
+++ data/CVE/list 2016-05-26 14:08:36 UTC (rev 42045)
@@ -11,8 +11,9 @@
CVE-2013-XXXX [Fixed memory overrun bug in gdImageScaleTwoPass]
- libgd2 2.1.1-1
NOTE: https://github.com/libgd/libgd/commit/4f65a3e4eedaffa1efcf9ee1eb08f0b504fbc31a (gd-2.1.1)
- - php7.0 7.0.7-1
- - php5 5.6.22+dfsg-1
+ - php7.0 7.0.7-1 (unimportant)
+ - php5 5.6.22+dfsg-1 (unimportant)
+ NOTE: Starting with 5.4.0-1 Debian uses the system copy of libgd
NOTE: PHP bug: https://bugs.php.net/bug.php?id=72227
NOTE: Fixed in 7.0.7, 5.6.22, 5.5.36
NOTE: CVE Request: http://www.openwall.com/lists/oss-security/2016/05/25/3
More information about the Secure-testing-commits
mailing list