[Secure-testing-commits] r56006 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Fri Sep 22 09:18:23 UTC 2017


Author: carnil
Date: 2017-09-22 09:18:23 +0000 (Fri, 22 Sep 2017)
New Revision: 56006

Modified:
   data/CVE/list
Log:
Add two more sam2p issues

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-09-22 09:16:20 UTC (rev 56005)
+++ data/CVE/list	2017-09-22 09:18:23 UTC (rev 56006)
@@ -133,9 +133,11 @@
 CVE-2017-14638 (AP4_AtomFactory::CreateAtomFromStream in Core/Ap4AtomFactory.cpp in ...)
 	NOT-FOR-US: Bento4
 CVE-2017-14637 (In sam2p 0.49.3, there is an invalid read of size 2 in the parse_rgb ...)
-	TODO: check
+	- sam2p <removed>
+	NOTE: https://github.com/pts/sam2p/issues/14
 CVE-2017-14636 (Because of an integer overflow in sam2p 0.49.3, a loop executes ...)
-	TODO: check
+	- sam2p <removed>
+	NOTE: https://github.com/pts/sam2p/issues/14
 CVE-2017-14635 (In Open Ticket Request System (OTRS) 3.3.x before 3.3.18, 4.x before ...)
 	- otrs2 <unfixed>
 	NOTE: https://www.otrs.com/security-advisory-2017-04-security-update-otrs-versions/




More information about the Secure-testing-commits mailing list