[Secure-testing-commits] r44903 - in data: CVE DSA

Salvatore Bonaccorso carnil at moszumanska.debian.org
Mon Sep 26 05:39:46 UTC 2016


Author: carnil
Date: 2016-09-26 05:39:46 +0000 (Mon, 26 Sep 2016)
New Revision: 44903

Modified:
   data/CVE/list
   data/DSA/list
Log:
One more CVE assigned for imagemagick update in DSA-3652-1

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2016-09-26 05:35:49 UTC (rev 44902)
+++ data/CVE/list	2016-09-26 05:39:46 UTC (rev 44903)
@@ -4006,8 +4006,6 @@
 	TODO: check
 CVE-2016-6824 (Huawei AC6003, AC6005, AC6605, and ACU2 access controllers with ...)
 	TODO: check
-CVE-2016-6823
-	RESERVED
 CVE-2016-6888 [net: vmxnet: integer overflow in packet initialisation]
 	RESERVED
 	- qemu 1:2.6+dfsg-3.1 (bug #834902)
@@ -4169,10 +4167,9 @@
 	NOTE: https://git.kernel.org/linus/be0726d33cb8f411945884664924bed3cb8c70ee (v4.6-rc1)
 CVE-2015-8951
 	RESERVED
-CVE-2016-XXXX [Buffer overflow in bmp file reader]
+CVE-2016-6823 [Buffer overflow in bmp file reader]
 	[experimental] - imagemagick 8:6.9.5.9+dfsg-1
 	- imagemagick <unfixed> (bug #834504)
-	[jessie] - imagemagick 8:6.8.9.9-5+deb8u4
 	NOTE: https://github.com/ImageMagick/ImageMagick/commit/4cc6ec8a4197d4c008577127736bf7985d632323
 CVE-2016-XXXX [Out-of-bound in exif (jpeg) reader]
 	[experimental] - imagemagick 8:6.9.5.9+dfsg-1

Modified: data/DSA/list
===================================================================
--- data/DSA/list	2016-09-26 05:35:49 UTC (rev 44902)
+++ data/DSA/list	2016-09-26 05:39:46 UTC (rev 44903)
@@ -78,7 +78,7 @@
 	{CVE-2016-6354}
 	[jessie] - flex 2.5.39-8+deb8u1
 [25 Aug 2016] DSA-3652-1 imagemagick - security update
-	{CVE-2016-4562 CVE-2016-4563 CVE-2016-4564 CVE-2016-5010 CVE-2016-5687 CVE-2016-5688 CVE-2016-5689 CVE-2016-5690 CVE-2016-5691 CVE-2016-5841 CVE-2016-5842 CVE-2016-6491 CVE-2016-7513 CVE-2016-7514 CVE-2016-7515 CVE-2015-8957 CVE-2015-8958 CVE-2016-7516 CVE-2016-7517 CVE-2016-7518 CVE-2016-7519 CVE-2016-7520 CVE-2016-7521 CVE-2016-7522 CVE-2016-7523 CVE-2016-7524 CVE-2016-7525 CVE-2016-7526 CVE-2016-7527 CVE-2016-7528 CVE-2016-7529 CVE-2016-7530 CVE-2016-7531 CVE-2016-7532 CVE-2016-7533 CVE-2016-7534 CVE-2016-7535 CVE-2016-7536 CVE-2016-7537 CVE-2016-7538 CVE-2015-8959 CVE-2014-9907 CVE-2016-7539 CVE-2016-7540}
+	{CVE-2016-4562 CVE-2016-4563 CVE-2016-4564 CVE-2016-5010 CVE-2016-5687 CVE-2016-5688 CVE-2016-5689 CVE-2016-5690 CVE-2016-5691 CVE-2016-5841 CVE-2016-5842 CVE-2016-6491 CVE-2016-7513 CVE-2016-7514 CVE-2016-7515 CVE-2015-8957 CVE-2015-8958 CVE-2016-7516 CVE-2016-7517 CVE-2016-7518 CVE-2016-7519 CVE-2016-7520 CVE-2016-7521 CVE-2016-7522 CVE-2016-7523 CVE-2016-7524 CVE-2016-7525 CVE-2016-7526 CVE-2016-7527 CVE-2016-7528 CVE-2016-7529 CVE-2016-7530 CVE-2016-7531 CVE-2016-7532 CVE-2016-7533 CVE-2016-7534 CVE-2016-7535 CVE-2016-7536 CVE-2016-7537 CVE-2016-7538 CVE-2015-8959 CVE-2014-9907 CVE-2016-7539 CVE-2016-7540 CVE-2016-6823}
 	[jessie] - imagemagick 8:6.8.9.9-5+deb8u4
 [25 Aug 2016] DSA-3651-1 rails - security update
 	{CVE-2016-6316}




More information about the Secure-testing-commits mailing list