[Secure-testing-commits] r48319 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Tue Jan 24 06:01:55 UTC 2017


Author: carnil
Date: 2017-01-24 06:01:55 +0000 (Tue, 24 Jan 2017)
New Revision: 48319

Modified:
   data/CVE/list
Log:
Update CVE-2017-5563

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-01-24 05:54:18 UTC (rev 48318)
+++ data/CVE/list	2017-01-24 06:01:55 UTC (rev 48319)
@@ -23,7 +23,9 @@
 CVE-2017-5564
 	RESERVED
 CVE-2017-5563 (LibTIFF version 4.0.7 is vulnerable to a heap-based buffer over-read in ...)
-	TODO: check
+	- tiff <unfixed> (unimportant)
+	NOTE: http://bugzilla.maptools.org/show_bug.cgi?id=2664
+	NOTE: bmp2tiff utility removed in 4.0.6-3 and 4.0.3-12.3+deb8u2
 CVE-2017-5562
 	RESERVED
 CVE-2017-5561




More information about the Secure-testing-commits mailing list