[Secure-testing-commits] r58733 - data/CVE
Salvatore Bonaccorso
carnil at moszumanska.debian.org
Wed Dec 20 16:11:30 UTC 2017
Author: carnil
Date: 2017-12-20 16:11:30 +0000 (Wed, 20 Dec 2017)
New Revision: 58733
Modified:
data/CVE/list
Log:
Reference fix for CVE-2017-17789
Modified: data/CVE/list
===================================================================
--- data/CVE/list 2017-12-20 16:09:27 UTC (rev 58732)
+++ data/CVE/list 2017-12-20 16:11:30 UTC (rev 58733)
@@ -185,6 +185,8 @@
RESERVED
- gimp <unfixed> (bug #884837)
NOTE: https://bugzilla.gnome.org/show_bug.cgi?id=790849
+ NOTE: https://git.gnome.org/browse/GIMP/commit/?id=28e95fbeb5720e6005a088fa811f5bf3c1af48b8 (master)
+ NOTE: https://git.gnome.org/browse/GIMP/commit/?id=01898f10f87a094665a7fdcf7153990f4e511d3f (gimp-2-8)
NOTE: Cannot be reproduced in wheezy with "valgrind --trace-children=yes gimp <reproducerfile>"
NOTE: Some OOB read/write can be reproduced in sid with "valgrind --trace-children=yes gimp <reproducerfile>"
CVE-2017-17787 [gimp: OOB read in PSP]
More information about the Secure-testing-commits
mailing list