[Secure-testing-commits] r56411 - data/CVE
Salvatore Bonaccorso
carnil at moszumanska.debian.org
Wed Oct 4 19:24:27 UTC 2017
Author: carnil
Date: 2017-10-04 19:24:27 +0000 (Wed, 04 Oct 2017)
New Revision: 56411
Modified:
data/CVE/list
Log:
Record fixed version for ghostscript in unstable
Excpeptionally kept as well the tracking information from experimental,
the upload before the one entering unstable, as it does not cause harm
for the tracking information and makes clear the fix first entered
experimental.
Modified: data/CVE/list
===================================================================
--- data/CVE/list 2017-10-04 19:19:18 UTC (rev 56410)
+++ data/CVE/list 2017-10-04 19:24:27 UTC (rev 56411)
@@ -9119,7 +9119,7 @@
CVE-2017-11714 (psi/ztoken.c in Artifex Ghostscript 9.21 mishandles references to the ...)
{DSA-3986-1 DLA-1048-1}
[experimental] - ghostscript 9.22~~rc1~dfsg-1
- - ghostscript <unfixed> (bug #869977)
+ - ghostscript 9.22~dfsg-1 (bug #869977)
NOTE: https://bugs.ghostscript.com/show_bug.cgi?id=698158
NOTE: http://git.ghostscript.com/?p=ghostpdl.git;a=commit;h=671fd59eb657743aa86fbc1895cb15872a317caa (ghostpdl-9.22rc1)
CVE-2017-11713
@@ -12934,7 +12934,7 @@
CVE-2017-9835 (The gs_alloc_ref_array function in psi/ialloc.c in Artifex Ghostscript ...)
{DSA-3986-1 DLA-1048-1}
[experimental] - ghostscript 9.22~~rc1~dfsg-1
- - ghostscript <unfixed> (bug #869907)
+ - ghostscript 9.22~dfsg-1 (bug #869907)
NOTE: https://bugs.ghostscript.com/show_bug.cgi?id=697985
NOTE: http://git.ghostscript.com/?p=ghostpdl.git;a=commit;h=cfde94be1d4286bc47633c6e6eaf4e659bd78066 (ghostpdl-9.22rc1)
CVE-2017-9834 (SQL injection vulnerability in the WatuPRO plugin before 5.5.3.7 for ...)
@@ -14799,7 +14799,7 @@
CVE-2017-9739 (The Ins_JMPR function in base/ttinterp.c in Artifex Ghostscript ...)
{DSA-3986-1 DLA-1048-1}
[experimental] - ghostscript 9.22~~rc1~dfsg-1
- - ghostscript <unfixed> (bug #869910)
+ - ghostscript 9.22~dfsg-1 (bug #869910)
NOTE: https://bugs.ghostscript.com/show_bug.cgi?id=698063
NOTE: http://git.ghostscript.com/?p=ghostpdl.git;a=commit;h=c501a58f8d5650c8ba21d447c0d6f07eafcb0f15 (ghostpdl-9.22rc1)
CVE-2017-9738
@@ -14831,13 +14831,13 @@
CVE-2017-9727 (The gx_ttfReader__Read function in base/gxttfb.c in Artifex Ghostscript ...)
{DSA-3986-1 DLA-1048-1}
[experimental] - ghostscript 9.22~~rc1~dfsg-1
- - ghostscript <unfixed> (bug #869913)
+ - ghostscript 9.22~dfsg-1 (bug #869913)
NOTE: http://bugs.ghostscript.com/show_bug.cgi?id=698056
NOTE: http://git.ghostscript.com/?p=ghostpdl.git;a=commit;h=937ccd17ac65935633b2ebc06cb7089b91e17e6b (ghostpdl-9.22rc1)
CVE-2017-9726 (The Ins_MDRP function in base/ttinterp.c in Artifex Ghostscript ...)
{DSA-3986-1 DLA-1048-1}
[experimental] - ghostscript 9.22~~rc1~dfsg-1
- - ghostscript <unfixed> (bug #869915)
+ - ghostscript 9.22~dfsg-1 (bug #869915)
NOTE: http://bugs.ghostscript.com/show_bug.cgi?id=698055
NOTE: http://git.ghostscript.com/?p=ghostpdl.git;a=commit;h=7755e67116e8973ee0e3b22d653df026a84fa01b (ghostpdl-9.22rc1)
CVE-2017-9735 (Jetty through 9.4.x is prone to a timing channel in ...)
@@ -15115,13 +15115,13 @@
CVE-2017-9612 (The Ins_IP function in base/ttinterp.c in Artifex Ghostscript GhostXPS ...)
{DSA-3986-1 DLA-1048-1}
[experimental] - ghostscript 9.22~~rc1~dfsg-1
- - ghostscript <unfixed> (bug #869916)
+ - ghostscript 9.22~dfsg-1 (bug #869916)
NOTE: https://bugs.ghostscript.com/show_bug.cgi?id=698026
NOTE: http://git.ghostscript.com/?p=ghostpdl.git;a=commit;h=98f6da60b9d463c617e631fc254cf6d66f2e8e3c (ghostpdl-9.22rc1)
CVE-2017-9611 (The Ins_MIRP function in base/ttinterp.c in Artifex Ghostscript ...)
{DSA-3986-1 DLA-1048-1}
[experimental] - ghostscript 9.22~~rc1~dfsg-1
- - ghostscript <unfixed> (bug #869917)
+ - ghostscript 9.22~dfsg-1 (bug #869917)
NOTE: https://bugs.ghostscript.com/show_bug.cgi?id=698024
NOTE: http://git.ghostscript.com/?p=ghostpdl.git;a=commit;h=c7c55972758a93350882c32147801a3485b010fe (ghostpdl-9.22rc1)
CVE-2017-9610 (The xps_load_sfnt_name function in xps/xpsfont.c in Artifex Ghostscript ...)
More information about the Secure-testing-commits
mailing list