[Secure-testing-commits] r50203 - data/CVE

Raphaël Hertzog hertzog at moszumanska.debian.org
Thu Mar 30 16:44:22 UTC 2017


Author: hertzog
Date: 2017-03-30 16:44:22 +0000 (Thu, 30 Mar 2017)
New Revision: 50203

Modified:
   data/CVE/list
Log:
Triage tiff3 CVE on wheezy

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-03-30 15:37:06 UTC (rev 50202)
+++ data/CVE/list	2017-03-30 16:44:22 UTC (rev 50203)
@@ -354,6 +354,7 @@
 	{DLA-877-1}
 	- tiff 4.0.7-2
 	- tiff3 <removed>
+	[wheezy] - tiff3 <not-affected> (Unreproducible)
 	NOTE: https://blogs.gentoo.org/ago/2017/01/01/libtiff-multiple-heap-based-buffer-overflow/
 	NOTE: https://github.com/vadz/libtiff/commit/1044b43637fa7f70fb19b93593777b78bd20da86
 	NOTE: http://bugzilla.maptools.org/show_bug.cgi?id=2604
@@ -369,6 +370,7 @@
 	{DLA-877-1}
 	- tiff 4.0.7-2
 	- tiff3 <removed>
+	[wheezy] - tiff3 <not-affected> (Unreproducible, BigTIFF not supported by this version)
 	NOTE: https://blogs.gentoo.org/ago/2017/01/01/libtiff-multiple-divide-by-zero/
 	NOTE: https://github.com/vadz/libtiff/commit/43bc256d8ae44b92d2734a3c5bc73957a4d7c1ec
 	NOTE: http://bugzilla.maptools.org/show_bug.cgi?id=2611
@@ -376,6 +378,7 @@
 	{DLA-877-1}
 	- tiff 4.0.7-2
 	- tiff3 <removed>
+	[wheezy] - tiff3 <not-affected> (Unreproducible)
 	NOTE: https://blogs.gentoo.org/ago/2017/01/01/libtiff-multiple-divide-by-zero
 	NOTE: https://github.com/vadz/libtiff/commit/438274f938e046d33cb0e1230b41da32ffe223e1
 	NOTE: http://bugzilla.maptools.org/show_bug.cgi?id=2596
@@ -7257,6 +7260,7 @@
 	{DSA-3762-1 DLA-795-1}
 	- tiff 4.0.7-2
 	- tiff3 <removed>
+	[wheezy] - tiff3 <not-affected> (libtiff-tools not shipped by this source package)
 	NOTE: http://bugzilla.maptools.org/show_bug.cgi?id=2610
 	NOTE: Fixed by: https://github.com/vadz/libtiff/commit/787c0ee906430b772f33ca50b97b8b5ca070faec
 CVE-2016-10092 (Heap-based buffer overflow in the readContigStripsIntoBuffer function ...)




More information about the Secure-testing-commits mailing list