[Secure-testing-commits] r46204 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Tue Nov 15 05:23:58 UTC 2016


Author: carnil
Date: 2016-11-15 05:23:57 +0000 (Tue, 15 Nov 2016)
New Revision: 46204

Modified:
   data/CVE/list
Log:
Add references for CVE-2016-926{4,5,6}

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2016-11-15 01:39:14 UTC (rev 46203)
+++ data/CVE/list	2016-11-15 05:23:57 UTC (rev 46204)
@@ -70,12 +70,15 @@
 CVE-2016-9266 [left shift in listmp3.c]
 	- ming <unfixed> (bug #843928)
 	NOTE: https://blogs.gentoo.org/ago/2016/11/09/libming-listmp3-left-shift-in-listmp3-c
+	NOTE: https://github.com/libming/libming/issues/53
 CVE-2016-9265 [divide-by-zero in printMP3Headers (listmp3.c)]
 	- ming <unfixed> (bug #843928)
 	NOTE: https://blogs.gentoo.org/ago/2016/11/09/libming-listmp3-divide-by-zero-in-printmp3headers-list
+	NOTE: https://github.com/libming/libming/issues/52
 CVE-2016-9264 [global-buffer-overflow in printMP3Headers (listmp3.c)]
 	- ming <unfixed> (bug #843928)
 	NOTE: https://blogs.gentoo.org/ago/2016/11/07/libming-listmp3-global-buffer-overflow-in-printmp3headers-listmp3-c
+	NOTE: https://github.com/libming/libming/issues/51
 CVE-2016-9262 [use after free in jas_realloc (jas_malloc.c)]
 	RESERVED
 	- jasper <removed>




More information about the Secure-testing-commits mailing list