[Secure-testing-commits] r53719 - in data: CVE DSA

Salvatore Bonaccorso carnil at moszumanska.debian.org
Thu Jul 20 19:38:13 UTC 2017


Author: carnil
Date: 2017-07-20 19:38:13 +0000 (Thu, 20 Jul 2017)
New Revision: 53719

Modified:
   data/CVE/list
   data/DSA/list
Log:
CVE-2017-11478/imagemagick assigned

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-07-20 18:59:44 UTC (rev 53718)
+++ data/CVE/list	2017-07-20 19:38:13 UTC (rev 53719)
@@ -380,10 +380,8 @@
 	[stretch] - imagemagick 8:6.9.7.4+dfsg-11+deb9u1
 	[jessie] - imagemagick 8:6.8.9.9-5+deb8u10
 	NOTE: https://github.com/ImageMagick/ImageMagick/issues/525
-CVE-2017-XXXX [CPU exhaustion in ReadOneDJVUImage]
+CVE-2017-11478 [CPU exhaustion in ReadOneDJVUImage]
 	- imagemagick 8:6.9.7.4+dfsg-12 (bug #867826)
-	[stretch] - imagemagick 8:6.9.7.4+dfsg-11+deb9u1
-	[jessie] - imagemagick 8:6.8.9.9-5+deb8u10
 	NOTE: https://github.com/ImageMagick/ImageMagick/issues/528
 CVE-2017-XXXX [CPU exhaustion in ReadOneMNGImage]
 	- imagemagick 8:6.9.7.4+dfsg-12 (bug #867825)

Modified: data/DSA/list
===================================================================
--- data/DSA/list	2017-07-20 18:59:44 UTC (rev 53718)
+++ data/DSA/list	2017-07-20 19:38:13 UTC (rev 53719)
@@ -2,7 +2,7 @@
 	{CVE-2017-1000026}
 	[stretch] - ruby-mixlib-archive 0.2.0-1+deb9u1
 [18 Jul 2017] DSA-3914-1 imagemagick - security update
-	{CVE-2017-9439 CVE-2017-9440 CVE-2017-9500 CVE-2017-9501 CVE-2017-10928 CVE-2017-11141 CVE-2017-11170 CVE-2017-11188 CVE-2017-11360 CVE-2017-11352 CVE-2017-11449 CVE-2017-11448 CVE-2017-11447 CVE-2017-11450}
+	{CVE-2017-9439 CVE-2017-9440 CVE-2017-9500 CVE-2017-9501 CVE-2017-10928 CVE-2017-11141 CVE-2017-11170 CVE-2017-11188 CVE-2017-11360 CVE-2017-11352 CVE-2017-11449 CVE-2017-11448 CVE-2017-11447 CVE-2017-11450 CVE-2017-11478}
 	[jessie] - imagemagick 8:6.8.9.9-5+deb8u10
 	[stretch] - imagemagick 8:6.9.7.4+dfsg-11+deb9u1
 [18 Jul 2017] DSA-3913-1 apache2 - security update




More information about the Secure-testing-commits mailing list