[Secure-testing-commits] r53988 - data/CVE
Salvatore Bonaccorso
carnil at moszumanska.debian.org
Thu Jul 27 11:14:58 UTC 2017
Author: carnil
Date: 2017-07-27 11:14:58 +0000 (Thu, 27 Jul 2017)
New Revision: 53988
Modified:
data/CVE/list
Log:
Update CVE-2017-9740
Modified: data/CVE/list
===================================================================
--- data/CVE/list 2017-07-27 11:13:53 UTC (rev 53987)
+++ data/CVE/list 2017-07-27 11:14:58 UTC (rev 53988)
@@ -5205,7 +5205,10 @@
CVE-2017-9741 (install/make-config.php in ProjectSend r754 allows remote attackers to ...)
NOT-FOR-US: ProjectSend
CVE-2017-9740 (The xps_decode_font_char_imp function in xps/xpsfont.c in Artifex ...)
- - ghostscript <unfixed>
+ - ghostscript <unfixed> (unimportant)
+ [jessie] - ghostscript <not-affected> (Vulnerable code not present)
+ [wheezy] - ghostscript <not-affected> (Vulnerable code not present)
+ NOTE: The Debian binary package is not affected xps/ not used
NOTE: https://bugs.ghostscript.com/show_bug.cgi?id=698064
NOTE: http://git.ghostscript.com/?p=ghostpdl.git;a=commit;h=961b10cdd71403072fb99401a45f3bef6ce53626
CVE-2017-9739 (The Ins_JMPR function in base/ttinterp.c in Artifex Ghostscript ...)
More information about the Secure-testing-commits
mailing list