[Secure-testing-commits] r49284 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Tue Feb 28 06:08:48 UTC 2017


Author: carnil
Date: 2017-02-28 06:08:47 +0000 (Tue, 28 Feb 2017)
New Revision: 49284

Modified:
   data/CVE/list
Log:
CVE-2017-6196 update, vulnerability introduced later

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-02-28 06:02:52 UTC (rev 49283)
+++ data/CVE/list	2017-02-28 06:08:47 UTC (rev 49284)
@@ -432,7 +432,7 @@
 	NOTE: vector and seen under valgrind. It might be disputable if that is the
 	NOTE: same vulnerability though.
 CVE-2017-6196 (Multiple use-after-free vulnerabilities in the gx_image_enum_begin ...)
-	- ghostscript <unfixed> (bug #856142)
+	- ghostscript <not-affected> (Issue introduced later, cf. bug #856142)
 	NOTE: https://bugs.ghostscript.com/show_bug.cgi?id=697596
 	NOTE: Fixed by: http://git.ghostscript.com/?p=ghostpdl.git;h=ecceafe3abba2714ef9b432035fe0739d9b1a283
 	NOTE: Possibly introduced only after http://git.ghostscript.com/?p=ghostpdl.git;h=cffb5712bc10c2c2f46adf311fc74aaae74cb784




More information about the Secure-testing-commits mailing list