[Secure-testing-commits] r46474 - data/CVE
Salvatore Bonaccorso
carnil at moszumanska.debian.org
Wed Nov 23 05:30:01 UTC 2016
Author: carnil
Date: 2016-11-23 05:30:00 +0000 (Wed, 23 Nov 2016)
New Revision: 46474
Modified:
data/CVE/list
Log:
Add CVE-2016-9558/dwarfutils
Modified: data/CVE/list
===================================================================
--- data/CVE/list 2016-11-23 05:28:33 UTC (rev 46473)
+++ data/CVE/list 2016-11-23 05:30:00 UTC (rev 46474)
@@ -5,6 +5,10 @@
NOTE: https://bugzilla.gnome.org/show_bug.cgi?id=774834
NOTE: Fixed by: https://cgit.freedesktop.org/gstreamer/gst-plugins-good/commit/?id=bf43f44fcfada5ec4a3ce60cb374340486fe9fac
NOTE: https://cgit.freedesktop.org/gstreamer/gst-plugins-good/commit/?id=fec77de8cbb0c8192b77aff2e563705ba421f2f2
+CVE-2016-9558 [negation overflow in dwarf_leb.c]
+ - dwarfutils <unfixed>
+ NOTE: https://blogs.gentoo.org/ago/2016/11/19/libdwarf-negation-overflow-in-dwarf_leb-c
+ NOTE: Fixed by: https://sourceforge.net/p/libdwarf/code/ci/4f19e1050cd8e9ddf2cb6caa061ff2fec4c9b5f9/#diff-5
CVE-2016-9557 [signed integer overflow in jas_image.c]
- jasper <removed>
NOTE: https://blogs.gentoo.org/ago/2016/11/19/jasper-signed-integer-overflow-in-jas_image-c
More information about the Secure-testing-commits
mailing list