[Secure-testing-commits] r44810 - in data: CVE DSA

Salvatore Bonaccorso carnil at moszumanska.debian.org
Thu Sep 22 06:24:31 UTC 2016


Author: carnil
Date: 2016-09-22 06:24:31 +0000 (Thu, 22 Sep 2016)
New Revision: 44810

Modified:
   data/CVE/list
   data/DSA/list
Log:
Start merging imagemagick assigned CVEs ...

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2016-09-22 04:35:31 UTC (rev 44809)
+++ data/CVE/list	2016-09-22 06:24:31 UTC (rev 44810)
@@ -2169,12 +2169,6 @@
 	RESERVED
 CVE-2016-7516
 	RESERVED
-CVE-2016-7515
-	RESERVED
-CVE-2016-7514
-	RESERVED
-CVE-2016-7513
-	RESERVED
 CVE-2016-7512
 	RESERVED
 CVE-2016-7511
@@ -4719,15 +4713,13 @@
 CVE-2016-6604
 	RESERVED
 	NOT-FOR-US: Samsung
-CVE-2016-XXXX [off-by-one error leading to segfault]
+CVE-2016-7513 [off-by-one error leading to segfault]
 	[experimental] - imagemagick 8:6.9.5.9+dfsg-1
 	- imagemagick <unfixed> (bug #832455)
-	[jessie] - imagemagick 8:6.8.9.9-5+deb8u4
 	NOTE: https://github.com/ImageMagick/ImageMagick/commit/a54fe0e8600eaf3dc6fe717d3c0398001507f723
-CVE-2016-XXXX [out-of-bounds read in coders/psd.c]
+CVE-2016-7514 [out-of-bounds read in coders/psd.c]
 	[experimental] - imagemagick 8:6.9.5.9+dfsg-1
 	- imagemagick <unfixed> (bug #832457)
-	[jessie] - imagemagick 8:6.8.9.9-5+deb8u4
 	NOTE: https://bugs.launchpad.net/bugs/1533442
 	NOTE: https://github.com/ImageMagick/ImageMagick/issues/83
 	NOTE: https://github.com/ImageMagick/ImageMagick/commit/198fffab4daf8aea88badd9c629350e5b26ec32f
@@ -4735,10 +4727,9 @@
 	NOTE: https://github.com/ImageMagick/ImageMagick/commit/e14fd0a2801f73bdc123baf4fbab97dec55919eb
 	NOTE: https://github.com/ImageMagick/ImageMagick/commit/280215b9936d145dd5ee91403738ccce1333cab1
 	NOTE: CVE Request: http://www.openwall.com/lists/oss-security/2016/08/07/1
-CVE-2016-XXXX [rle file handling for corrupted file]
+CVE-2016-7515 [rle file handling for corrupted file]
 	[experimental] - imagemagick 8:6.9.5.9+dfsg-1
 	- imagemagick <unfixed> (bug #832461)
-	[jessie] - imagemagick 8:6.8.9.9-5+deb8u4
 	NOTE: https://bugs.launchpad.net/bugs/1533445
 	NOTE: https://github.com/ImageMagick/ImageMagick/issues/82
 	NOTE: https://github.com/ImageMagick/ImageMagick/commit/2ad6d33493750a28a5a655d319a8e0b16c392de1

Modified: data/DSA/list
===================================================================
--- data/DSA/list	2016-09-22 04:35:31 UTC (rev 44809)
+++ data/DSA/list	2016-09-22 06:24:31 UTC (rev 44810)
@@ -62,7 +62,7 @@
 	{CVE-2016-6354}
 	[jessie] - flex 2.5.39-8+deb8u1
 [25 Aug 2016] DSA-3652-1 imagemagick - security update
-	{CVE-2016-4562 CVE-2016-4563 CVE-2016-4564 CVE-2016-5010 CVE-2016-5687 CVE-2016-5688 CVE-2016-5689 CVE-2016-5690 CVE-2016-5691 CVE-2016-5841 CVE-2016-5842 CVE-2016-6491}
+	{CVE-2016-4562 CVE-2016-4563 CVE-2016-4564 CVE-2016-5010 CVE-2016-5687 CVE-2016-5688 CVE-2016-5689 CVE-2016-5690 CVE-2016-5691 CVE-2016-5841 CVE-2016-5842 CVE-2016-6491 CVE-2016-7513 CVE-2016-7514 CVE-2016-7515}
 	[jessie] - imagemagick 8:6.8.9.9-5+deb8u4
 [25 Aug 2016] DSA-3651-1 rails - security update
 	{CVE-2016-6316}




More information about the Secure-testing-commits mailing list