[Secure-testing-commits] r50654 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Fri Apr 14 10:07:04 UTC 2017


Author: carnil
Date: 2017-04-14 10:07:04 +0000 (Fri, 14 Apr 2017)
New Revision: 50654

Modified:
   data/CVE/list
Log:
Add CVE-2017-7864/freetype

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-04-14 10:02:09 UTC (rev 50653)
+++ data/CVE/list	2017-04-14 10:07:04 UTC (rev 50654)
@@ -16,7 +16,9 @@
 CVE-2017-7865 (FFmpeg before 2017-01-24 has an out-of-bounds write caused by a ...)
 	TODO: check
 CVE-2017-7864 (FreeType 2 before 2017-02-02 has an out-of-bounds write caused by a ...)
-	TODO: check
+	- freetype <unfixed>
+	NOTE: Fixed by: https://git.savannah.gnu.org/cgit/freetype/freetype2.git/commit/?id=e6699596af5c5d6f0ae0ea06e19df87dce088df8
+	NOTE: https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=509
 CVE-2017-7863 (FFmpeg before 2017-02-04 has an out-of-bounds write caused by a ...)
 	TODO: check
 CVE-2017-7862 (FFmpeg before 2017-02-07 has an out-of-bounds write caused by a ...)




More information about the Secure-testing-commits mailing list