[Secure-testing-commits] r48860 - data/CVE

Markus Koschany apo at moszumanska.debian.org
Sun Feb 12 19:11:20 UTC 2017


Author: apo
Date: 2017-02-12 19:11:20 +0000 (Sun, 12 Feb 2017)
New Revision: 48860

Modified:
   data/CVE/list
Log:
CVE-2017-2586,CVE-2017-2587:netpbm, Debian is not affected

vulnerable code not present, see also patch at

http://pkgs.fedoraproject.org/cgit/rpms/netpbm.git/commit/?id=c16a8b893ed77fc3f6f2b382d0d47d03621ed328


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-02-12 17:32:00 UTC (rev 48859)
+++ data/CVE/list	2017-02-12 19:11:20 UTC (rev 48860)
@@ -9330,12 +9330,14 @@
 	RESERVED
 CVE-2017-2587
 	RESERVED
-	- netpbm-free <undetermined>
+	- netpbm-free <not-affected> (vulnerable code not present)
 	NOTE: Debian uses an old fork of netpbm
+	NOTE: Fixed by http://pkgs.fedoraproject.org/cgit/rpms/netpbm.git/commit/?id=c16a8b893ed77fc3f6f2b382d0d47d03621ed328
 CVE-2017-2586
 	RESERVED
-	- netpbm-free <undetermined>
+	- netpbm-free <not-affected> (vulnerable code not present)
 	NOTE: Debian uses an old fork of netpbm
+	NOTE: Fixed by http://pkgs.fedoraproject.org/cgit/rpms/netpbm.git/commit/?id=c16a8b893ed77fc3f6f2b382d0d47d03621ed328
 CVE-2017-2585
 	RESERVED
 CVE-2017-2584 (arch/x86/kvm/emulate.c in the Linux kernel through 4.9.3 allows local ...)




More information about the Secure-testing-commits mailing list