[Secure-testing-commits] r55666 - data/CVE

Moritz Muehlenhoff jmm at moszumanska.debian.org
Mon Sep 11 21:44:29 UTC 2017


Author: jmm
Date: 2017-09-11 21:44:29 +0000 (Mon, 11 Sep 2017)
New Revision: 55666

Modified:
   data/CVE/list
Log:
new im issues


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-09-11 21:43:13 UTC (rev 55665)
+++ data/CVE/list	2017-09-11 21:44:29 UTC (rev 55666)
@@ -139,9 +139,11 @@
 CVE-2017-14250
 	RESERVED
 CVE-2017-14249 (ImageMagick 7.0.6-8 Q16 mishandles EOF checks in ReadMPCImage in ...)
-	TODO: check
+	- imagemagick <unfixed> (low)
+	NOTE: https://github.com/ImageMagick/ImageMagick/issues/708
 CVE-2017-14248 (A heap-based buffer over-read in SampleImage() in MagickCore/resize.c ...)
-	TODO: check
+	- imagemagick <unfixed> (low)
+	NOTE: https://github.com/ImageMagick/ImageMagick/issues/717
 CVE-2017-14247 (SQL Injection exists in the EyesOfNetwork web interface (aka eonweb) ...)
 	NOT-FOR-US: EyesOfNetwork (EON)
 CVE-2017-14246




More information about the Secure-testing-commits mailing list