[Secure-testing-commits] r55615 - data/CVE
Roberto C. Sanchez
roberto at moszumanska.debian.org
Sat Sep 9 22:51:07 UTC 2017
Author: roberto
Date: 2017-09-09 22:51:07 +0000 (Sat, 09 Sep 2017)
New Revision: 55615
Modified:
data/CVE/list
Log:
Note that CVE-2017-13726 and CVE-2017-13727 do not affect tiff3 in wheezy
Modified: data/CVE/list
===================================================================
--- data/CVE/list 2017-09-09 21:44:39 UTC (rev 55614)
+++ data/CVE/list 2017-09-09 22:51:07 UTC (rev 55615)
@@ -1354,6 +1354,7 @@
[stretch] - tiff <no-dsa> (Minor issue)
[jessie] - tiff <no-dsa> (Minor issue)
- tiff3 <removed>
+ [wheezy] - tiff3 <not-affected> (Vulnerable code not present)
NOTE: http://bugzilla.maptools.org/show_bug.cgi?id=2728
NOTE: Fixed by: https://github.com/vadz/libtiff/commit/b6af137bf9ef852f1a48a50a5afb88f9e9da01cc
CVE-2017-13726 (There is a reachable assertion abort in the function ...)
@@ -1361,6 +1362,7 @@
[stretch] - tiff <no-dsa> (Minor issue)
[jessie] - tiff <no-dsa> (Minor issue)
- tiff3 <removed>
+ [wheezy] - tiff3 <not-affected> (Vulnerable code not present)
NOTE: http://bugzilla.maptools.org/show_bug.cgi?id=2727
NOTE: Fixed by: https://github.com/vadz/libtiff/commit/f91ca83a21a6a583050e5a5755ce1441b2bf1d7e
CVE-2017-13725
More information about the Secure-testing-commits
mailing list