[Secure-testing-commits] r54149 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Tue Aug 1 04:34:35 UTC 2017


Author: carnil
Date: 2017-08-01 04:34:35 +0000 (Tue, 01 Aug 2017)
New Revision: 54149

Modified:
   data/CVE/list
Log:
Process four CVEs for OpenExif

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-08-01 04:26:08 UTC (rev 54148)
+++ data/CVE/list	2017-08-01 04:34:35 UTC (rev 54149)
@@ -1982,13 +1982,13 @@
 CVE-2017-11119 (The chk_mem_access function in cpu/nes6502/nes6502.c in libnosefart.a ...)
 	TODO: check
 CVE-2017-11118 (The ExifImageFile::readImage function in ExifImageFileRead.cpp in ...)
-	TODO: check
+	NOT-FOR-US: OpenExif
 CVE-2017-11117 (The ExifImageFile::readDHT function in ExifImageFileRead.cpp in ...)
-	TODO: check
+	NOT-FOR-US: OpenExif
 CVE-2017-11116 (The ExifImageFile::readDQT function in ExifImageFileRead.cpp in ...)
-	TODO: check
+	NOT-FOR-US: OpenExif
 CVE-2017-11115 (The ExifJpegHUFFTable::deriveTable function in ExifHuffmanTable.cpp in ...)
-	TODO: check
+	NOT-FOR-US: OpenExif
 CVE-2017-11114 (The put_chars function in html_r.c in Twibright Links 2.14 allows ...)
 	- links2 <unfixed> (bug #870299)
 	NOTE: PoC: http://seclists.org/fulldisclosure/2017/Jul/76




More information about the Secure-testing-commits mailing list