[Secure-testing-commits] r56553 - data/CVE

Roberto C. Sanchez roberto at moszumanska.debian.org
Tue Oct 10 03:15:24 UTC 2017


Author: roberto
Date: 2017-10-10 03:15:24 +0000 (Tue, 10 Oct 2017)
New Revision: 56553

Modified:
   data/CVE/list
Log:
Note that CVE-2017-14137 does not affect imagemagick in wheezy

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-10-09 21:10:13 UTC (rev 56552)
+++ data/CVE/list	2017-10-10 03:15:24 UTC (rev 56553)
@@ -2904,6 +2904,7 @@
 	NOTE: https://github.com/ImageMagick/ImageMagick/issues/639
 CVE-2017-14137 (ReadWEBPImage in coders/webp.c in ImageMagick 7.0.6-5 has an issue ...)
 	- imagemagick <unfixed> (low)
+	[wheezy] - imagemagick <not-affected> (Vulnerable code not present)
 	NOTE: https://github.com/ImageMagick/ImageMagick/issues/641
 	NOTE: https://github.com/ImageMagick/ImageMagick/commit/cb63560ba25e4a6c51ab282538c24877fff7d471
 	NOTE: ImageMagick-6: https://github.com/ImageMagick/ImageMagick/commit/cfc2bd4c87481d4cf60308cc6ffd3c61288ff004




More information about the Secure-testing-commits mailing list