[Secure-testing-commits] r46653 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Wed Nov 30 05:53:34 UTC 2016


Author: carnil
Date: 2016-11-30 05:53:32 +0000 (Wed, 30 Nov 2016)
New Revision: 46653

Modified:
   data/CVE/list
Log:
Add CVE-2016-9675, incomplete fix for CVE-2013-6045

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2016-11-30 05:42:57 UTC (rev 46652)
+++ data/CVE/list	2016-11-30 05:53:32 UTC (rev 46653)
@@ -86122,6 +86122,11 @@
 	[wheezy] - ikiwiki-hosting <no-dsa> (Minor XSS)
 CVE-2013-6046
 	RESERVED
+CVE-2016-9675 [Incorrect fix for CVE-2013-6045]
+	- openjpeg 1.5.2-1
+	[wheezy] - openjpeg 1.3+dfsg-4.8
+	[squeeze] - openjpeg 1.3+dfsg-4+squeeze3
+	NOTE: Introduced as well a regression, cf. https://bugs.debian.org/734238
 CVE-2013-6045 (Multiple heap-based buffer overflows in OpenJPEG 1.3 and earlier might ...)
 	{DSA-2808-1}
 	- openjpeg 1.3+dfsg-4.7 (bug #731237)




More information about the Secure-testing-commits mailing list