[Secure-testing-commits] r52214 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Fri Jun 2 04:25:19 UTC 2017


Author: carnil
Date: 2017-06-02 04:25:19 +0000 (Fri, 02 Jun 2017)
New Revision: 52214

Modified:
   data/CVE/list
Log:
Add notes for CVE-2016-10095

Track some further information since source package added back. We asked
MITRE to REJECT this CVE as duplicate issue, but got no reply so far nor
any reasoning why it should be kept.

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-06-01 22:18:58 UTC (rev 52213)
+++ data/CVE/list	2017-06-02 04:25:19 UTC (rev 52214)
@@ -13338,6 +13338,8 @@
 	NOTE: While the _TIFFVGetField function is a generic function, CVE IDs seem to be
 	NOTE: assigned per tool using it, so CVE-2015-7554/CVE-2016-10095 refers to the
 	NOTE: tiffsplit tool
+	NOTE: http://bugzilla.maptools.org/show_bug.cgi?id=2625
+	NOTE: Fixes as per http://bugzilla.maptools.org/show_bug.cgi?id=2580
 CVE-2016-10094 (Off-by-one error in the t2p_readwrite_pdf_image_tile function in ...)
 	{DSA-3762-1}
 	- tiff 4.0.7-4




More information about the Secure-testing-commits mailing list