[Secure-testing-commits] r45656 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Thu Oct 27 07:23:20 UTC 2016


Author: carnil
Date: 2016-10-27 07:23:20 +0000 (Thu, 27 Oct 2016)
New Revision: 45656

Modified:
   data/CVE/list
Log:
Add CVE-2016-9085

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2016-10-27 06:59:12 UTC (rev 45655)
+++ data/CVE/list	2016-10-27 07:23:20 UTC (rev 45656)
@@ -1,3 +1,9 @@
+CVE-2016-9085
+	- libwebp <unfixed>
+	NOTE: https://chromium.googlesource.com/webm/libwebp/+/e2affacc35f1df6cc3b1a9fa0ceff5ce2d0cce83
+	NOTE: Report: https://bugs.chromium.org/p/webp/issues/detail?id=314 (private)
+	NOTE: For libwebp only in examples, but other projects seem to use the gifdec.c
+	TODO: check other projects
 CVE-2016-9084 [... "kzalloc is changed to a kcalloc."]
 	- linux <unfixed>
 	NOTE: https://patchwork.kernel.org/patch/9373631/




More information about the Secure-testing-commits mailing list