[Secure-testing-commits] r51360 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Sat May 6 09:17:06 UTC 2017


Author: carnil
Date: 2017-05-06 09:17:06 +0000 (Sat, 06 May 2017)
New Revision: 51360

Modified:
   data/CVE/list
Log:
Update information for CVE-2017-7942/imagemagick

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-05-06 09:10:13 UTC (rev 51359)
+++ data/CVE/list	2017-05-06 09:17:06 UTC (rev 51360)
@@ -2045,8 +2045,8 @@
 	NOTE: https://github.com/ImageMagick/ImageMagick/issues/427
 CVE-2017-7942 (The ReadAVSImage function in avs.c in ImageMagick 7.0.5-4 allows remote ...)
 	- imagemagick 8:6.9.7.4+dfsg-6 (low; bug #860735)
-	[jessie] - imagemagick <no-dsa> (Minor issue)
-	[wheezy] - imagemagick <no-dsa> (Minor issue)
+	[jessie] - imagemagick <not-affected> (Vulnerable code not present, does not use pixel_info yet)
+	[wheezy] - imagemagick <not-affected> (Vulnerable code not present, does not use pixel_info yet)
 	NOTE: https://github.com/ImageMagick/ImageMagick/issues/429
 CVE-2017-7941 (The ReadSGIImage function in sgi.c in ImageMagick 7.0.5-4 allows remote ...)
 	- imagemagick 8:6.9.7.4+dfsg-6 (low; bug #860734)




More information about the Secure-testing-commits mailing list