[Secure-testing-commits] r52161 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Wed May 31 19:08:22 UTC 2017


Author: carnil
Date: 2017-05-31 19:08:22 +0000 (Wed, 31 May 2017)
New Revision: 52161

Modified:
   data/CVE/list
Log:
Update information for CVE-2017-9262/imagemagick

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-05-31 18:55:58 UTC (rev 52160)
+++ data/CVE/list	2017-05-31 19:08:22 UTC (rev 52161)
@@ -274,8 +274,9 @@
 	[wheezy] - openvswitch <not-affected> (No controllers implemented, cf. #863655)
 	NOTE: https://mail.openvswitch.org/pipermail/ovs-dev/2017-May/332966.html
 CVE-2017-9262 (In ImageMagick 7.0.5-6 Q16, the ReadJNGImage function in coders/png.c ...)
-	- imagemagick <unfixed>
+	- imagemagick <unfixed> (low; bug #863834)
 	NOTE: https://github.com/ImageMagick/ImageMagick/issues/475
+	NOTE: https://github.com/ImageMagick/ImageMagick/commit/4649578df8dcbfb2b08d8623d52486dc124da3a8
 CVE-2017-9261 (In ImageMagick 7.0.5-6 Q16, the ReadMNGImage function in coders/png.c ...)
 	- imagemagick <unfixed> (low; bug #863833)
 	[jessie] - imagemagick <no-dsa> (Minor issue)




More information about the Secure-testing-commits mailing list