[Secure-testing-commits] r52342 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Tue Jun 6 04:36:06 UTC 2017


Author: carnil
Date: 2017-06-06 04:36:06 +0000 (Tue, 06 Jun 2017)
New Revision: 52342

Modified:
   data/CVE/list
Log:
Add CVE-2017-9440/imagemagick

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-06-06 04:31:22 UTC (rev 52341)
+++ data/CVE/list	2017-06-06 04:36:06 UTC (rev 52342)
@@ -13,7 +13,8 @@
 CVE-2017-9441 (** DISPUTED ** Multiple cross-site scripting (XSS) vulnerabilities in ...)
 	NOT-FOR-US: BigTree CMS
 CVE-2017-9440 (In ImageMagick 7.0.5-5, a memory leak was found in the function ...)
-	TODO: check
+	- imagemagick <unfixed> (low)
+	NOTE: https://github.com/ImageMagick/ImageMagick/issues/462
 CVE-2017-9439 (In ImageMagick 7.0.5-5, a memory leak was found in the function ...)
 	TODO: check
 CVE-2017-9438 (libyara/re.c in the regexp module in YARA 3.5.0 allows remote attackers ...)




More information about the Secure-testing-commits mailing list