[Secure-testing-commits] r52915 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Mon Jun 26 05:46:01 UTC 2017


Author: carnil
Date: 2017-06-26 05:46:01 +0000 (Mon, 26 Jun 2017)
New Revision: 52915

Modified:
   data/CVE/list
Log:
Add CVE-2017-9865/poppler

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-06-26 05:45:48 UTC (rev 52914)
+++ data/CVE/list	2017-06-26 05:46:01 UTC (rev 52915)
@@ -14,7 +14,9 @@
 CVE-2017-9866
 	RESERVED
 CVE-2017-9865 (The function GfxImageColorMap::getGray in GfxState.cc in Poppler 0.54.0 ...)
-	TODO: check
+	- poppler <unfixed>
+	NOTE: https://bugs.freedesktop.org/show_bug.cgi?id=100774
+	NOTE: http://somevulnsofadlab.blogspot.com/2017/06/popplerstack-buffer-overflow-in.html
 CVE-2015-9101 (The fill_buffer_resample function in util.c in libmp3lame.a in LAME ...)
 	TODO: check
 CVE-2015-9100 (The fill_buffer_resample function in util.c in libmp3lame.a in LAME ...)




More information about the Secure-testing-commits mailing list