[Secure-testing-commits] r49902 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Tue Mar 21 19:30:37 UTC 2017


Author: carnil
Date: 2017-03-21 19:30:37 +0000 (Tue, 21 Mar 2017)
New Revision: 49902

Modified:
   data/CVE/list
Log:
Update status for CVE-2017-6962

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-03-21 19:20:18 UTC (rev 49901)
+++ data/CVE/list	2017-03-21 19:30:37 UTC (rev 49902)
@@ -550,7 +550,8 @@
 	RESERVED
 CVE-2017-6962 (An issue was discovered in apng2gif 1.7. There is an integer overflow ...)
 	- apng2gif <unfixed> (bug #854447)
-	NOTE: Reproduduction failed on wheezy, jessie and sid.
+	[jessie] - apng2gif <not-affected> (Vulnerable code introduced later with refactoring)
+	[wheezy] - apng2gif <not-affected> (Vulnerable code introduced later with refactoring)
 CVE-2017-6961 (An issue was discovered in apng2gif 1.7. There is improper sanitization ...)
 	- apng2gif <unfixed> (bug #854441)
 	NOTE: Reproduduction failed on wheezy, jessie and sid.




More information about the Secure-testing-commits mailing list