[Secure-testing-commits] r56638 - data/CVE

Moritz Muehlenhoff jmm at moszumanska.debian.org
Thu Oct 12 09:15:23 UTC 2017


Author: jmm
Date: 2017-10-12 09:15:23 +0000 (Thu, 12 Oct 2017)
New Revision: 56638

Modified:
   data/CVE/list
Log:
new im/gm issue


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-10-12 09:14:14 UTC (rev 56637)
+++ data/CVE/list	2017-10-12 09:15:23 UTC (rev 56638)
@@ -22,7 +22,11 @@
 CVE-2017-15278 (Cross-Site Scripting (XSS) was discovered in TeamPass before 2.1.27.9. ...)
 	NOT-FOR-US: TeamPass
 CVE-2017-15277 (ReadGIFImage in coders/gif.c in ImageMagick 7.0.6-1 and GraphicsMagick ...)
-	TODO: check
+	- imagemagick <unfixed>
+	- graphicsmagick <unfixed>
+	NOTE: https://github.com/ImageMagick/ImageMagick/commit/9fd10cf630832b36a588c1545d8736539b2f1fb5
+	NOTE: https://github.com/ImageMagick/ImageMagick/issues/592
+	NOTE: https://github.com/neex/gifoeb
 CVE-2017-15276
 	RESERVED
 CVE-2017-15275




More information about the Secure-testing-commits mailing list