[Secure-testing-commits] r54931 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Mon Aug 21 09:13:10 UTC 2017


Author: carnil
Date: 2017-08-21 09:13:10 +0000 (Mon, 21 Aug 2017)
New Revision: 54931

Modified:
   data/CVE/list
Log:
Add CVE-2017-12983/imagemagick

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-08-21 09:12:00 UTC (rev 54930)
+++ data/CVE/list	2017-08-21 09:13:10 UTC (rev 54931)
@@ -1,7 +1,8 @@
 CVE-2017-12984 (PHPMyWind 5.3 has XSS in shoppingcart.php, related to message.php, ...)
 	TODO: check
 CVE-2017-12983 (Heap-based buffer overflow in the ReadSFWImage function in coders/sfw.c ...)
-	TODO: check
+	- imagemagick <unfixed>
+	NOTE: https://github.com/ImageMagick/ImageMagick/issues/682
 CVE-2017-12981 (NexusPHP 1.5.beta5.20120707 has SQL Injection in forummanage.php via ...)
 	TODO: check
 CVE-2017-12980 (DokuWiki through 2017-02-19c has stored XSS when rendering a malicious ...)




More information about the Secure-testing-commits mailing list