[Secure-testing-commits] r53434 - data/CVE

Moritz Muehlenhoff jmm at moszumanska.debian.org
Thu Jul 13 06:19:55 UTC 2017


Author: jmm
Date: 2017-07-13 06:19:55 +0000 (Thu, 13 Jul 2017)
New Revision: 53434

Modified:
   data/CVE/list
Log:
another poppler non issue


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-07-13 06:07:18 UTC (rev 53433)
+++ data/CVE/list	2017-07-13 06:19:55 UTC (rev 53434)
@@ -24312,7 +24312,9 @@
 CVE-2017-2815
 	RESERVED
 CVE-2017-2814 (An exploitable heap overflow vulnerability exists in the image ...)
-	TODO: check
+	- poppler <unfixed> (unimportant)
+	NOTE: Debian links against libjpeg which is unaffected
+	NOTE: https://talosintelligence.com/vulnerability_reports/TALOS-2017-0319
 CVE-2017-2813 (An exploitable integer overflow vulnerability exists in the JPEG 2000 ...)
 	NOT-FOR-US: IrfanView
 CVE-2017-2812




More information about the Secure-testing-commits mailing list