[Secure-testing-commits] r57781 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Sat Nov 18 13:06:09 UTC 2017


Author: carnil
Date: 2017-11-18 13:06:09 +0000 (Sat, 18 Nov 2017)
New Revision: 57781

Modified:
   data/CVE/list
Log:
Add CVE-2017-100012{6,7,8}/exiv2

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-11-18 13:05:57 UTC (rev 57780)
+++ data/CVE/list	2017-11-18 13:06:09 UTC (rev 57781)
@@ -14,11 +14,14 @@
 CVE-2017-1000163 (The Phoenix Framework versions 1.0.0 through 1.0.4, 1.1.0 through ...)
 	TODO: check
 CVE-2017-1000128 (Exiv2 0.26 contains a stack out of bounds read in JPEG2000 parser ...)
-	TODO: check
+	- exiv2 <unfixed>
+	NOTE: http://www.openwall.com/lists/oss-security/2017/06/30/1
 CVE-2017-1000127 (Exiv2 0.26 contains a heap buffer overflow in tiff parser ...)
-	TODO: check
+	- exiv2 <unfixed>
+	NOTE: http://www.openwall.com/lists/oss-security/2017/06/30/1
 CVE-2017-1000126 (exiv2 0.26 contains a Stack out of bounds read in webp parser ...)
-	TODO: check
+	- exiv2 <unfixed>
+	NOTE: http://www.openwall.com/lists/oss-security/2017/06/30/1
 CVE-2017-16879
 	RESERVED
 CVE-2017-16878




More information about the Secure-testing-commits mailing list