[Secure-testing-commits] r58565 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Thu Dec 14 09:13:27 UTC 2017


Author: carnil
Date: 2017-12-14 09:13:27 +0000 (Thu, 14 Dec 2017)
New Revision: 58565

Modified:
   data/CVE/list
Log:
Add CVE-2017-17682/imagemagick

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-12-14 09:10:20 UTC (rev 58564)
+++ data/CVE/list	2017-12-14 09:13:27 UTC (rev 58565)
@@ -2001,7 +2001,10 @@
 CVE-2017-17683 (Panda Global Protection 17.0.1 allows a system crash via a 0xb3702c44 ...)
 	TODO: check
 CVE-2017-17682 (In ImageMagick 7.0.7-12 Q16, a large loop vulnerability was found in ...)
-	TODO: check
+	- imagemagick <unfixed>
+	NOTE: https://github.com/ImageMagick/ImageMagick/issues/870
+	NOTE: ImageMagick-6: https://github.com/ImageMagick/ImageMagick/commit/da649f031e36753c69268c5c027e695b8ae45e9a
+	NOTE: https://github.com/ImageMagick/ImageMagick/commit/06c8dd4de59e48d282d4f224faa64ab9012a711a
 CVE-2017-17681 (In ImageMagick 7.0.7-12 Q16, an infinite loop vulnerability was found ...)
 	TODO: check
 CVE-2017-17680 (In ImageMagick 7.0.7-12 Q16, a memory leak vulnerability was found in ...)




More information about the Secure-testing-commits mailing list