[Secure-testing-commits] r48123 - data/CVE
Salvatore Bonaccorso
carnil at moszumanska.debian.org
Tue Jan 17 05:39:05 UTC 2017
Author: carnil
Date: 2017-01-17 05:39:04 +0000 (Tue, 17 Jan 2017)
New Revision: 48123
Modified:
data/CVE/list
Log:
Track first round of CVEs for imagemagick
Modified: data/CVE/list
===================================================================
--- data/CVE/list 2017-01-16 23:00:07 UTC (rev 48122)
+++ data/CVE/list 2017-01-17 05:39:04 UTC (rev 48123)
@@ -1,15 +1,15 @@
-CVE-2017-XXXX [double free in profile]
+CVE-2017-5506 [double free in profile]
- imagemagick <unfixed> (bug #851383)
NOTE: https://github.com/ImageMagick/ImageMagick/issues/354
- NOTE: CVE Request: http://www.openwall.com/lists/oss-security/2017/01/16/6
-CVE-2017-XXXX [memory leak in MPC file handling]
+ NOTE: http://www.openwall.com/lists/oss-security/2017/01/16/6
+CVE-2017-5507 [memory leak in MPC file handling]
- imagemagick <unfixed> (bug #851382)
NOTE: https://github.com/ImageMagick/ImageMagick/commit/4493d9ca1124564da17f9b628ef9d0f1a6be9738
- NOTE: CVE Request: http://www.openwall.com/lists/oss-security/2017/01/16/6
-CVE-2017-XXXX [Crash - PushQuantumPixel - Heap-Buffer-Overflow (TIFF)]
+ NOTE: http://www.openwall.com/lists/oss-security/2017/01/16/6
+CVE-2017-5508 [Crash - PushQuantumPixel - Heap-Buffer-Overflow (TIFF)]
- imagemagick <unfixed> (bug #851381)
NOTE: https://www.imagemagick.org/discourse-server/viewtopic.php?f=3&t=31161
- NOTE: CVE Request: http://www.openwall.com/lists/oss-security/2017/01/16/6
+ NOTE: http://www.openwall.com/lists/oss-security/2017/01/16/6
CVE-2017-XXXX [memory leak in caption and label handling]
- imagemagick 8:6.9.7.0+dfsg-2 (bug #851380)
NOTE: https://github.com/ImageMagick/ImageMagick/commit/aeff00de228bc5a158c2a975ab47845d8a1db456
@@ -26,14 +26,14 @@
- imagemagick <unfixed> (bug #851374)
NOTE: https://github.com/ImageMagick/ImageMagick/issues/347
NOTE: CVE Request: http://www.openwall.com/lists/oss-security/2017/01/16/6
-CVE-2017-XXXX [ipl file missing malloc check]
+CVE-2016-10144 [ipl file missing malloc check]
- imagemagick <unfixed> (bug #851485)
NOTE: Fixed by: https://github.com/ImageMagick/ImageMagick/commit/97566cf2806c0a5a86e884c96831a0c3b1ec6c20
- NOTE: CVE Request: http://www.openwall.com/lists/oss-security/2017/01/16/6
-CVE-2017-XXXX [wpg file off by one]
+ NOTE: http://www.openwall.com/lists/oss-security/2017/01/16/6
+CVE-2016-10145 [wpg file off by one]
- imagemagick <unfixed> (bug #851483)
NOTE: Fixed by: https://github.com/ImageMagick/ImageMagick/commit/d23beebe7b1179fb75db1e85fbca3100e49593d9
- NOTE: CVE Request: http://www.openwall.com/lists/oss-security/2017/01/16/6
+ NOTE: http://www.openwall.com/lists/oss-security/2017/01/16/6
CVE-2017-5487 [WordPress 4.7 - User Information Disclosure via REST API]
- wordpress 4.7.1+dfsg-1 (bug #851310)
NOTE: http://www.openwall.com/lists/oss-security/2017/01/14/1
More information about the Secure-testing-commits
mailing list