[Secure-testing-commits] r54152 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Tue Aug 1 06:58:37 UTC 2017


Author: carnil
Date: 2017-08-01 06:58:37 +0000 (Tue, 01 Aug 2017)
New Revision: 54152

Modified:
   data/CVE/list
Log:
Add bug reference for sox issues

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-08-01 06:55:53 UTC (rev 54151)
+++ data/CVE/list	2017-08-01 06:58:37 UTC (rev 54152)
@@ -1175,12 +1175,12 @@
 	NOTE: https://github.com/ImageMagick/ImageMagick/issues/518
 	NOTE: Fixed by: https://github.com/ImageMagick/ImageMagick/commit/224bc946b24824a77e8e8c52ee07e9bc65796e30
 CVE-2017-11359 (The wavwritehdr function in wav.c in Sound eXchange (SoX) 14.4.2 allows ...)
-	- sox <unfixed>
+	- sox <unfixed> (bug #870328)
 	[stretch] - sox <no-dsa> (Minor issue)
 	[jessie] - sox <no-dsa> (Minor issue)
 	NOTE: http://seclists.org/fulldisclosure/2017/Jul/81
 CVE-2017-11358 (The read_samples function in hcom.c in Sound eXchange (SoX) 14.4.2 ...)
-	- sox <unfixed>
+	- sox <unfixed> (bug #870328)
 	[stretch] - sox <no-dsa> (Minor issue)
 	[jessie] - sox <no-dsa> (Minor issue)
 	NOTE: http://seclists.org/fulldisclosure/2017/Jul/81
@@ -1290,7 +1290,7 @@
 CVE-2017-11333 (The vorbis_analysis_wrote function in lib/block.c in Xiph.Org libvorbis ...)
 	TODO: check
 CVE-2017-11332 (The startread function in wav.c in Sound eXchange (SoX) 14.4.2 allows ...)
-	- sox <unfixed>
+	- sox <unfixed> (bug #870328)
 	[stretch] - sox <no-dsa> (Minor issue)
 	[jessie] - sox <no-dsa> (Minor issue)
 	NOTE: http://seclists.org/fulldisclosure/2017/Jul/81




More information about the Secure-testing-commits mailing list