[Secure-testing-commits] r54116 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Mon Jul 31 04:49:16 UTC 2017


Author: carnil
Date: 2017-07-31 04:49:16 +0000 (Mon, 31 Jul 2017)
New Revision: 54116

Modified:
   data/CVE/list
Log:
Two CVEs are duplicate of older CVEs, MITRE should possibly just reject them

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-07-31 04:33:06 UTC (rev 54115)
+++ data/CVE/list	2017-07-31 04:49:16 UTC (rev 54116)
@@ -6330,15 +6330,17 @@
 	NOTE: https://sourceforge.net/p/lame/bugs/463/
 	NOTE: Invalid read in command line tool so no CVE is needed. MITRE contacted by ago at gentoo
 CVE-2017-9411 (The fill_buffer_resample function in libmp3lame/util.c in LAME 3.99.5 ...)
-	- lame <unfixed>
+	- lame 3.99.5+repack1-6
+	[wheezy] - lame 3.99.5+repack1-3+deb7u1
 	NOTE: http://seclists.org/fulldisclosure/2017/Jul/63
 	NOTE: https://sourceforge.net/p/lame/bugs/462/
-	NOTE: Possible duplicate of CVE-2015-9100
+	NOTE: Duplicate of CVE-2015-9100
 CVE-2017-9410 (The fill_buffer_resample function in libmp3lame/util.c in LAME 3.99.5 ...)
-	- lame <unfixed>
+	- lame 3.99.5+repack1-6
+	[wheezy] - lame 3.99.5+repack1-3+deb7u1
 	NOTE: http://seclists.org/fulldisclosure/2017/Jul/63
 	NOTE: https://sourceforge.net/p/lame/bugs/461/
-	NOTE: Possible duplicate of CVE-2015-9101
+	NOTE: Duplicate of CVE-2015-9101
 CVE-2017-9409 (In ImageMagick 7.0.5-5, the ReadMPCImage function in mpc.c allows ...)
 	{DLA-1000-1}
 	- imagemagick 8:6.9.7.4+dfsg-11 (low; bug #864090)




More information about the Secure-testing-commits mailing list