[Secure-testing-commits] r49885 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Tue Mar 21 14:53:18 UTC 2017


Author: carnil
Date: 2017-03-21 14:53:18 +0000 (Tue, 21 Mar 2017)
New Revision: 49885

Modified:
   data/CVE/list
Log:
Add CVE-2017-7207/ghostscript

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-03-21 14:45:13 UTC (rev 49884)
+++ data/CVE/list	2017-03-21 14:53:18 UTC (rev 49885)
@@ -19,7 +19,10 @@
 	NOTE: https://bugzilla.libav.org/show_bug.cgi?id=1000
 	NOTE: https://git.libav.org/?p=libav.git;a=commit;h=522d850e68ec4b77d3477b3c8f55b1ba00a9d69a
 CVE-2017-7207 (The mem_get_bits_rectangle function in Artifex Software, Inc. ...)
-	TODO: check
+	- ghostscript <unfixed>
+	[jessie] - ghostscript <no-dsa> (Minor issue)
+	NOTE: http://git.ghostscript.com/?p=ghostpdl.git;a=commitdiff;h=309eca4e0a31ea70dcc844812691439312dad091
+	NOTE: https://bugs.ghostscript.com/show_bug.cgi?id=697676
 CVE-2017-7206 (The ff_h2645_extract_rbsp function in libavcodec in libav 9.21 allows ...)
 	- libav <removed>
 	- ffmpeg <undetermined>




More information about the Secure-testing-commits mailing list