[Secure-testing-commits] r53755 - in data: CVE DSA

Salvatore Bonaccorso carnil at moszumanska.debian.org
Fri Jul 21 19:32:01 UTC 2017


Author: carnil
Date: 2017-07-21 19:32:01 +0000 (Fri, 21 Jul 2017)
New Revision: 53755

Modified:
   data/CVE/list
   data/DSA/list
Log:
CVE-2017-11505/imagemagick assigned

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-07-21 19:30:52 UTC (rev 53754)
+++ data/CVE/list	2017-07-21 19:32:01 UTC (rev 53755)
@@ -456,10 +456,8 @@
 	[stretch] - imagemagick 8:6.9.7.4+dfsg-11+deb9u1
 	[jessie] - imagemagick 8:6.8.9.9-5+deb8u10
 	NOTE: https://github.com/ImageMagick/ImageMagick/issues/527
-CVE-2017-XXXX [CPU exhaustion in ReadOneJNGImage]
+CVE-2017-11505 [CPU exhaustion in ReadOneJNGImage]
 	- imagemagick 8:6.9.7.4+dfsg-12 (bug #867824)
-	[stretch] - imagemagick 8:6.9.7.4+dfsg-11+deb9u1
-	[jessie] - imagemagick 8:6.8.9.9-5+deb8u10
 	NOTE: https://github.com/ImageMagick/ImageMagick/issues/526
 CVE-2017-XXXX [memory exhaustion in ReadEPTImage in ept.c]
 	- imagemagick 8:6.9.7.4+dfsg-12 (bug #867821)

Modified: data/DSA/list
===================================================================
--- data/DSA/list	2017-07-21 19:30:52 UTC (rev 53754)
+++ data/DSA/list	2017-07-21 19:32:01 UTC (rev 53755)
@@ -6,7 +6,7 @@
 	{CVE-2017-1000026}
 	[stretch] - ruby-mixlib-archive 0.2.0-1+deb9u1
 [18 Jul 2017] DSA-3914-1 imagemagick - security update
-	{CVE-2017-9439 CVE-2017-9440 CVE-2017-9501 CVE-2017-10928 CVE-2017-11141 CVE-2017-11170 CVE-2017-11188 CVE-2017-11360 CVE-2017-11449 CVE-2017-11448 CVE-2017-11447 CVE-2017-11450 CVE-2017-11478}
+	{CVE-2017-9439 CVE-2017-9440 CVE-2017-9501 CVE-2017-10928 CVE-2017-11141 CVE-2017-11170 CVE-2017-11188 CVE-2017-11360 CVE-2017-11449 CVE-2017-11448 CVE-2017-11447 CVE-2017-11450 CVE-2017-11478 CVE-2017-11505}
 	[jessie] - imagemagick 8:6.8.9.9-5+deb8u10
 	[stretch] - imagemagick 8:6.9.7.4+dfsg-11+deb9u1
 [18 Jul 2017] DSA-3913-1 apache2 - security update




More information about the Secure-testing-commits mailing list