[Secure-testing-commits] r47997 - data/CVE

Moritz Muehlenhoff jmm at moszumanska.debian.org
Fri Jan 13 18:37:19 UTC 2017


Author: jmm
Date: 2017-01-13 18:37:19 +0000 (Fri, 13 Jan 2017)
New Revision: 47997

Modified:
   data/CVE/list
Log:
tiff fixed


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-01-13 18:26:33 UTC (rev 47996)
+++ data/CVE/list	2017-01-13 18:37:19 UTC (rev 47997)
@@ -32057,11 +32057,12 @@
 CVE-2016-3626
 	RESERVED
 CVE-2016-3625 (tif_read.c in the tiff2bw tool in LibTIFF 4.0.6 and earlier allows ...)
-	- tiff <unfixed>
+	- tiff 4.0.3-1
 	[wheezy] - tiff <no-dsa> (Minor issue)
 	- tiff3 <removed>
 	[wheezy] - tiff3 <not-affected> (Does not ship libtiff tools)
 	NOTE: http://bugzilla.maptools.org/show_bug.cgi?id=2566
+	NOTE: Not reproducible with jessie and above, marking the version in jessie as fixed
 CVE-2016-3624 (The cvtClump function in the rgb2ycbcr tool in LibTIFF 4.0.6 and ...)
 	- tiff 4.0.6-3
 	[wheezy] - tiff <no-dsa> (Minor issue)




More information about the Secure-testing-commits mailing list