[Secure-testing-commits] r53980 - data/CVE

Moritz Muehlenhoff jmm at moszumanska.debian.org
Thu Jul 27 09:13:05 UTC 2017


Author: jmm
Date: 2017-07-27 09:13:05 +0000 (Thu, 27 Jul 2017)
New Revision: 53980

Modified:
   data/CVE/list
Log:
new lame issues


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-07-27 09:10:14 UTC (rev 53979)
+++ data/CVE/list	2017-07-27 09:13:05 UTC (rev 53980)
@@ -6041,11 +6041,14 @@
 CVE-2012-6705 (Cross Site Scripting (XSS) exists in Jamroom before 4.2.7 via the ...)
 	NOT-FOR-US: Jamroom
 CVE-2017-9412 (The unpack_read_samples function in frontend/get_audio.c in LAME 3.99.5 ...)
-	TODO: check
+	- lame <unfixed>
+	NOTE: http://seclists.org/fulldisclosure/2017/Jul/63
 CVE-2017-9411 (The fill_buffer_resample function in libmp3lame/util.c in LAME 3.99.5 ...)
-	TODO: check
+	- lame <unfixed>
+	NOTE: http://seclists.org/fulldisclosure/2017/Jul/63
 CVE-2017-9410 (The fill_buffer_resample function in libmp3lame/util.c in LAME 3.99.5 ...)
-	TODO: check
+	- lame <unfixed>
+	NOTE: http://seclists.org/fulldisclosure/2017/Jul/63
 CVE-2017-9409 (In ImageMagick 7.0.5-5, the ReadMPCImage function in mpc.c allows ...)
 	{DLA-1000-1}
 	- imagemagick 8:6.9.7.4+dfsg-11 (low; bug #864090)




More information about the Secure-testing-commits mailing list