[Secure-testing-commits] r52983 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Wed Jun 28 12:37:00 UTC 2017


Author: carnil
Date: 2017-06-28 12:37:00 +0000 (Wed, 28 Jun 2017)
New Revision: 52983

Modified:
   data/CVE/list
Log:
Add CVE-2017-9991/ffmpeg

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-06-28 12:36:50 UTC (rev 52982)
+++ data/CVE/list	2017-06-28 12:37:00 UTC (rev 52983)
@@ -22,7 +22,9 @@
 	- libav <undetermined>
 	NOTE: https://github.com/FFmpeg/FFmpeg/commit/f52fbf4f3ed02a7d872d8a102006f29b4421f360
 CVE-2017-9991 (Heap-based buffer overflow in the xwd_decode_frame function in ...)
-	TODO: check
+	- ffmpeg 7:3.2.5-1
+	- libav <undetermined>
+	NOTE: https://github.com/FFmpeg/FFmpeg/commit/441026fcb13ac23aa10edc312bdacb6445a0ad06
 CVE-2017-9990 (Stack-based buffer overflow in the color_string_to_rgba function in ...)
 	TODO: check
 CVE-2017-9989 (util/outputtxt.c in libming 0.4.8 mishandles memory allocation. A ...)




More information about the Secure-testing-commits mailing list