[Secure-testing-commits] r51896 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Tue May 23 19:15:49 UTC 2017


Author: carnil
Date: 2017-05-23 19:15:49 +0000 (Tue, 23 May 2017)
New Revision: 51896

Modified:
   data/CVE/list
Log:
Update CVE-2016-5735/pngquant

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-05-23 19:15:38 UTC (rev 51895)
+++ data/CVE/list	2017-05-23 19:15:49 UTC (rev 51896)
@@ -37184,7 +37184,8 @@
 CVE-2016-5736 (The default configuration of the IPsec IKE peer listener in F5 BIG-IP ...)
 	NOT-FOR-US: BIG-IP
 CVE-2016-5735 (Integer overflow in the rwpng_read_image24_libpng function in rwpng.c ...)
-	TODO: check
+	- pngquant <unfixed>
+	NOTE: https://github.com/pornel/pngquant/commit/b7c217680cda02dddced245d237ebe8c383be285
 CVE-2016-5734 (phpMyAdmin 4.0.x before 4.0.10.16, 4.4.x before 4.4.15.7, and 4.6.x ...)
 	- phpmyadmin 4:4.6.3-1
 	[jessie] - phpmyadmin <no-dsa> (Vulnerable only with a php version earlier than the one in jessie)




More information about the Secure-testing-commits mailing list