[Secure-testing-commits] r53641 - data/CVE

Moritz Muehlenhoff jmm at moszumanska.debian.org
Tue Jul 18 22:33:40 UTC 2017


Author: jmm
Date: 2017-07-18 22:33:40 +0000 (Tue, 18 Jul 2017)
New Revision: 53641

Modified:
   data/CVE/list
Log:
new cairo issue


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-07-18 22:29:29 UTC (rev 53640)
+++ data/CVE/list	2017-07-18 22:33:40 UTC (rev 53641)
@@ -11017,7 +11017,9 @@
 	NOTE: Fixed by: http://git.savannah.gnu.org/gitweb/?p=gnulib.git;a=commitdiff;h=94e01571
 	NOTE: Introduced with 4bc76593 and 4e6e16b3f.
 CVE-2017-7475 (Cairo version 1.15.4 is vulnerable to a NULL pointer dereference ...)
-	- cairo <undetermined>
+	- cairo <unfixed> (low)
+	[stretch] - cairo <no-dsa> (Minor issue)
+	[jessie] - cairo <no-dsa> (Minor issue)
 	NOTE: https://bugs.freedesktop.org/show_bug.cgi?id=100763
 CVE-2017-7474 (It was found that the Keycloak Node.js adapter 2.5 - 3.0 did not ...)
 	NOT-FOR-US: Keycloak




More information about the Secure-testing-commits mailing list