[Secure-testing-commits] r48092 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Sun Jan 15 19:01:35 UTC 2017


Author: carnil
Date: 2017-01-15 19:01:35 +0000 (Sun, 15 Jan 2017)
New Revision: 48092

Modified:
   data/CVE/list
Log:
Add more imagemagick issues

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-01-15 18:46:47 UTC (rev 48091)
+++ data/CVE/list	2017-01-15 19:01:35 UTC (rev 48092)
@@ -1,3 +1,15 @@
+CVE-2017-XXXX [Crash - PushQuantumPixel - Heap-Buffer-Overflow (TIFF)]
+	- imagemagick <unfixed> (bug #851381)
+	NOTE: https://www.imagemagick.org/discourse-server/viewtopic.php?f=3&t=31161
+CVE-2017-XXXX [out of bound in psd file handling]
+	- imagemagick <unfixed> (bug #851377)
+	NOTE: https://github.com/ImageMagick/ImageMagick/issues/350
+CVE-2017-XXXX [memory corruption heap overflow, psb file related, another one]
+	- imagemagick <unfixed> (bug #851376)
+	NOTE: https://github.com/ImageMagick/ImageMagick/issues/348
+CVE-2017-XXXX [memory corruption heap overflow, psb file related]
+	- imagemagick <unfixed> (bug #851374)
+	NOTE: https://github.com/ImageMagick/ImageMagick/issues/347
 CVE-2017-XXXX [ipl file missing malloc check]
 	- imagemagick <unfixed> (bug #851485)
 	NOTE: Fixed by: https://github.com/ImageMagick/ImageMagick/commit/97566cf2806c0a5a86e884c96831a0c3b1ec6c20




More information about the Secure-testing-commits mailing list