[Secure-testing-commits] r58893 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Sun Dec 24 09:36:39 UTC 2017


Author: carnil
Date: 2017-12-24 09:36:39 +0000 (Sun, 24 Dec 2017)
New Revision: 58893

Modified:
   data/CVE/list
Log:
Add CVE-2017-17880

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-12-24 09:29:12 UTC (rev 58892)
+++ data/CVE/list	2017-12-24 09:36:39 UTC (rev 58893)
@@ -34,7 +34,10 @@
 	NOTE: https://github.com/ImageMagick/ImageMagick/commit/ece953bbe14e8514afc23e05e4030eea872e29da
 	NOTE: ImageMagick-6: https://github.com/ImageMagick/ImageMagick/commit/aa601d79a630f6de0694fadbeee31456a357fa73
 CVE-2017-17880 (In ImageMagick 7.0.7-16 Q16 x86_64 2017-12-21, there is a stack-based ...)
-	TODO: check
+	- imagemagick <unfixed>
+	NOTE: https://github.com/ImageMagick/ImageMagick/issues/907
+	NOTE: https://github.com/ImageMagick/ImageMagick/commit/4b5d1edb02c432040e3ff894d0c461bcce6fd2c9
+	NOTE: https://github.com/ImageMagick/ImageMagick/commit/663b3b432c202cd2aeda7ea7e82b74cce51ab1cf
 CVE-2017-17879 (In ImageMagick 7.0.7-16 Q16 x86_64 2017-12-21, there is a heap-based ...)
 	TODO: check
 CVE-2017-17878 (An issue was discovered in Valve Steam Link build 643. Root passwords ...)




More information about the Secure-testing-commits mailing list