[Secure-testing-commits] r46397 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Mon Nov 21 20:18:26 UTC 2016


Author: carnil
Date: 2016-11-21 20:18:26 +0000 (Mon, 21 Nov 2016)
New Revision: 46397

Modified:
   data/CVE/list
Log:
Add entry for #845243

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2016-11-21 19:57:23 UTC (rev 46396)
+++ data/CVE/list	2016-11-21 20:18:26 UTC (rev 46397)
@@ -8,6 +8,11 @@
 	NOTE: Since 7.0.72-3, src:tomcat7 only builds the Servlet API
 	- tomcat6 6.0.41-3
 	NOTE: Since 6.0.41-3, src:tomcat6 only builds a servlet and docs in Jessie
+CVE-2016-XXXX [null pointer passed as argument 2, which is declared to never be null]
+	- imagemagick <unfixed> (bug #845243)
+	NOTE: https://github.com/ImageMagick/ImageMagick/commit/1c795ce9fe1d6feac8bc36c2e6c5ba7110b671b1
+	NOTE: https://github.com/ImageMagick/ImageMagick/issues/298
+	TODO: check
 CVE-2016-XXXX [Heap buffer overflow in heap-buffer-overflow in IsPixelGray]
 	- imagemagick <unfixed> (bug #845242)
 	NOTE: https://github.com/ImageMagick/ImageMagick/issues/301




More information about the Secure-testing-commits mailing list