[Secure-testing-commits] r55685 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Tue Sep 12 10:53:41 UTC 2017


Author: carnil
Date: 2017-09-12 10:53:41 +0000 (Tue, 12 Sep 2017)
New Revision: 55685

Modified:
   data/CVE/list
Log:
Add new graphicsmagick issue

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-09-12 10:50:24 UTC (rev 55684)
+++ data/CVE/list	2017-09-12 10:53:41 UTC (rev 55685)
@@ -61,7 +61,9 @@
 CVE-2017-14315
 	RESERVED
 CVE-2017-14314 (Off-by-one error in the DrawImage function in magick/render.c in ...)
-	TODO: check
+	- graphicsmagick <unfixed>
+	NOTE: http://hg.code.sf.net/p/graphicsmagick/code/rev/2835184bfb78
+	NOTE: https://sourceforge.net/p/graphicsmagick/bugs/448/
 CVE-2017-14312 (Nagios Core through 4.3.4 initially executes /usr/sbin/nagios as root ...)
 	TODO: check
 CVE-2015-9228 (In post-new.php in the Photocrati NextGEN Gallery plugin 2.1.10 for ...)




More information about the Secure-testing-commits mailing list