[Secure-testing-commits] r49904 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Tue Mar 21 19:35:33 UTC 2017


Author: carnil
Date: 2017-03-21 19:35:32 +0000 (Tue, 21 Mar 2017)
New Revision: 49904

Modified:
   data/CVE/list
Log:
Triaged CVE-2017-6961 for older versions than 1.7

Code introduced later with refactoring after 1.5 version.

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-03-21 19:33:37 UTC (rev 49903)
+++ data/CVE/list	2017-03-21 19:35:32 UTC (rev 49904)
@@ -554,7 +554,8 @@
 	[wheezy] - apng2gif <not-affected> (Vulnerable code introduced later with refactoring)
 CVE-2017-6961 (An issue was discovered in apng2gif 1.7. There is improper sanitization ...)
 	- apng2gif <unfixed> (bug #854441)
-	NOTE: Reproduduction failed on wheezy, jessie and sid.
+	[jessie] - apng2gif <not-affected> (Vulnerable code introduced later with refactoring)
+	[wheezy] - apng2gif <not-affected> (Vulnerable code introduced later with refactoring)
 CVE-2017-6960 (An issue was discovered in apng2gif 1.7. There ...)
 	- apng2gif <unfixed> (bug #854367)
 	NOTE: Reproduced on wheezy, jessie and sid.




More information about the Secure-testing-commits mailing list