[Secure-testing-commits] r46271 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Thu Nov 17 11:39:26 UTC 2016


Author: carnil
Date: 2016-11-17 11:39:26 +0000 (Thu, 17 Nov 2016)
New Revision: 46271

Modified:
   data/CVE/list
Log:
Add CVE-2016-9390/jasper

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2016-11-17 11:37:32 UTC (rev 46270)
+++ data/CVE/list	2016-11-17 11:39:26 UTC (rev 46271)
@@ -1,3 +1,7 @@
+CVE-2016-9390 [jas_seq.c:90: jas_matrix_t *jas_seq2d_create(int, int, int, int): Assertion `xstart <= xend && ystart <= yend' failed.]
+	- jasper <removed>
+	NOTE: Fix: https://github.com/mdadams/jasper/commit/ba2b9d000660313af7b692542afbd374c5685865
+	NOTE: Testcase: https://github.com/asarubbo/poc/blob/master/00007-jasper-assert-jas_matrix_t
 CVE-2016-9389
 	- jasper <removed>
 	NOTE: Fix: https://github.com/mdadams/jasper/commit/dee11ec440d7908d1daf69f40a3324b27cf213ba




More information about the Secure-testing-commits mailing list