[Secure-testing-commits] r46096 - data/CVE

Chris Lamb lamby at moszumanska.debian.org
Thu Nov 10 10:22:16 UTC 2016


Author: lamby
Date: 2016-11-10 10:22:16 +0000 (Thu, 10 Nov 2016)
New Revision: 46096

Modified:
   data/CVE/list
Log:
Add bug for potrace vulns.

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2016-11-10 09:33:21 UTC (rev 46095)
+++ data/CVE/list	2016-11-10 10:22:16 UTC (rev 46096)
@@ -2116,11 +2116,11 @@
 	NOTE: that would trigger the format string vulnerability.
 CVE-2016-8686 [memory allocation failure]
 	RESERVED
-	- potrace <unfixed>
+	- potrace <unfixed> (bug #843861)
 	NOTE: https://blogs.gentoo.org/ago/2016/08/29/potrace-memory-allocation-failure
 CVE-2016-8685 [invalid memory access in findnext (decompose.c)]
 	RESERVED
-	- potrace <unfixed>
+	- potrace <unfixed> (bug #843861)
 	NOTE: https://blogs.gentoo.org/ago/2016/08/29/potrace-invalid-memory-access-in-findnext-decompose-c/
 CVE-2016-8684 [memory allocation failure in MagickMalloc (memory.c)]
 	RESERVED




More information about the Secure-testing-commits mailing list