[Secure-testing-commits] r53443 - data/CVE

Moritz Muehlenhoff jmm at moszumanska.debian.org
Thu Jul 13 12:29:08 UTC 2017


Author: jmm
Date: 2017-07-13 12:29:08 +0000 (Thu, 13 Jul 2017)
New Revision: 53443

Modified:
   data/CVE/list
Log:
unrar non-issues


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-07-13 09:13:26 UTC (rev 53442)
+++ data/CVE/list	2017-07-13 12:29:08 UTC (rev 53443)
@@ -38,9 +38,11 @@
 CVE-2017-11191
 	RESERVED
 CVE-2017-11190 (unrarlib.c in unrar-free 0.0.1, when _DEBUG_LOG mode is enabled, might ...)
-	TODO: check
+	- unrar-free <unfixed> (unimportant)
+	NOTE: Affected debug code not enabled
 CVE-2017-11189 (unrarlib.c in unrar-free 0.0.1 might allow remote attackers to cause a ...)
-	TODO: check
+	- unrar-free <unfixed> (unimportant)
+	NOTE: Crash in CLI tool, no security impact
 CVE-2017-11188 (The ReadDPXImage function in coders\dpx.c in ImageMagick 7.0.6-0 has a ...)
 	- imagemagick <unfixed>
 	NOTE: https://github.com/ImageMagick/ImageMagick/issues/509




More information about the Secure-testing-commits mailing list