[Secure-testing-commits] r55843 - data/CVE
Salvatore Bonaccorso
carnil at moszumanska.debian.org
Mon Sep 18 06:07:02 UTC 2017
Author: carnil
Date: 2017-09-18 06:07:02 +0000 (Mon, 18 Sep 2017)
New Revision: 55843
Modified:
data/CVE/list
Log:
Add CVE-2017-14505/imagemagick
Modified: data/CVE/list
===================================================================
--- data/CVE/list 2017-09-17 21:54:53 UTC (rev 55842)
+++ data/CVE/list 2017-09-18 06:07:02 UTC (rev 55843)
@@ -3,7 +3,10 @@
CVE-2017-14506
RESERVED
CVE-2017-14505 (DrawGetStrokeDashArray in wand/drawing-wand.c in ImageMagick 7.0.7-1 ...)
- TODO: check
+ - imagemagick <unfixed>
+ NOTE: https://github.com/ImageMagick/ImageMagick/issues/716
+ NOTE: https://github.com/ImageMagick/ImageMagick/commit/6ad5fc3c9b652eec27fc0b1a0817159f8547d5d9
+ NOTE: ImageMagick-6: https://github.com/ImageMagick/ImageMagick/commit/f7b0cf098bc800c5b6181dc522a99997bfee8948
CVE-2017-14504 (ReadPNMImage in coders/pnm.c in GraphicsMagick 1.3.26 does not ensure ...)
TODO: check
CVE-2017-14503 (libarchive 3.3.2 suffers from an out-of-bounds read within ...)
More information about the Secure-testing-commits
mailing list