[Secure-testing-commits] r55875 - data/CVE

Moritz Muehlenhoff jmm at moszumanska.debian.org
Mon Sep 18 14:36:09 UTC 2017


Author: jmm
Date: 2017-09-18 14:36:09 +0000 (Mon, 18 Sep 2017)
New Revision: 55875

Modified:
   data/CVE/list
Log:
gdm not-affected in released distros
one imagemagick issue unimportant


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-09-18 14:21:46 UTC (rev 55874)
+++ data/CVE/list	2017-09-18 14:36:09 UTC (rev 55875)
@@ -103,7 +103,7 @@
 	NOTE: https://github.com/ImageMagick/ImageMagick/commit/1942317d9208ea17ee17d976a39768cd51d74160
 	NOTE: ImageMagick-6: https://github.com/ImageMagick/ImageMagick/commit/c55fb18c3f78445d100a378ab8b3c0acd53c6590
 CVE-2017-14531 (ImageMagick 7.0.7-0 has a memory exhaustion issue in ReadSUNImage in ...)
-	- imagemagick <unfixed>
+	- imagemagick <unfixed> (unimportant)
 	NOTE: https://github.com/ImageMagick/ImageMagick/issues/718
 	NOTE: https://github.com/ImageMagick/ImageMagick/commit/69967f4161bd14d8e03ea463d6545da442a6ea78
 	NOTE: ImageMagick-6: https://github.com/ImageMagick/ImageMagick/commit/1385a09732c261f1f403a9af6700979ca56c76d3
@@ -6626,7 +6626,11 @@
 CVE-2017-12164 [lock screen can be circumvented when autologin is set]
 	RESERVED
 	- gdm3 3.26.0-1
+	[stretch] - gdm3 <not-affected> (Vulnerable code not present)
+	[jessie] - gdm3 <not-affected> (Vulnerable code not present)
+	[wheezy] - gdm3 <not-affected> (Vulnerable code not present)
 	NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=1490417
+	NOTE: Introduced in https://git.gnome.org/browse/gdm/commit/?id=ff98b28
 CVE-2017-12163
 	RESERVED
 CVE-2017-12162




More information about the Secure-testing-commits mailing list