[Secure-testing-commits] r45157 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Sun Oct 9 05:18:33 UTC 2016


Author: carnil
Date: 2016-10-09 05:18:33 +0000 (Sun, 09 Oct 2016)
New Revision: 45157

Modified:
   data/CVE/list
Log:
Add note for CVE-2016-7996

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2016-10-09 04:55:24 UTC (rev 45156)
+++ data/CVE/list	2016-10-09 05:18:33 UTC (rev 45157)
@@ -1778,6 +1778,10 @@
 CVE-2016-7996
 	RESERVED
 	- graphicsmagick 1.3.21-2
+	NOTE: The patch addressing CVE-2016-7996 applied is in 1.3.25-4, but in
+	NOTE: the experimental upload 1.3.20-4 and later uploaded to unstable as
+	NOTE: 1.3.21-2 the build is done with --with-quantum-depth=16 switching
+	NOTE: away from the default with QuantumDepth=8
 CVE-2016-7995 [usb: hcd-ehci: memory leak in ehci_process_itd]
 	RESERVED
 	- qemu <unfixed>




More information about the Secure-testing-commits mailing list