[Secure-testing-commits] r56409 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Wed Oct 4 19:15:58 UTC 2017


Author: carnil
Date: 2017-10-04 19:15:58 +0000 (Wed, 04 Oct 2017)
New Revision: 56409

Modified:
   data/CVE/list
Log:
Add two new libxfont issues

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-10-04 18:59:29 UTC (rev 56408)
+++ data/CVE/list	2017-10-04 19:15:58 UTC (rev 56409)
@@ -3626,12 +3626,16 @@
 	NOT-FOR-US: Axesstel MU553S MU55XS-V1.14
 CVE-2017-13723
 	RESERVED
-CVE-2017-13722
+CVE-2017-13722 [pcfGetProperties: Check string boundaries]
 	RESERVED
+	- libxfont <unfixed>
+	NOTE: Fixed by: https://cgit.freedesktop.org/xorg/lib/libXfont/commit/?id=672bb944311392e2415b39c0d63b1e1902905bcd
 CVE-2017-13721
 	RESERVED
-CVE-2017-13720
+CVE-2017-13720 [Check for end of string in PatternMatch]
 	RESERVED
+	- libxfont <unfixed>
+	NOTE: Fixed by: https://cgit.freedesktop.org/xorg/lib/libXfont/commit/?id=d1e670a4a8704b8708e493ab6155589bcd570608
 CVE-2017-13719
 	RESERVED
 CVE-2017-13718




More information about the Secure-testing-commits mailing list