[Secure-testing-commits] r56078 - data/CVE

Thorsten Alteholz alteholz at moszumanska.debian.org
Sat Sep 23 21:36:00 UTC 2017


Author: alteholz
Date: 2017-09-23 21:36:00 +0000 (Sat, 23 Sep 2017)
New Revision: 56078

Modified:
   data/CVE/list
Log:
vulnerable code for CVE-2017-14348 not present in wheezy

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-09-23 21:18:29 UTC (rev 56077)
+++ data/CVE/list	2017-09-23 21:36:00 UTC (rev 56078)
@@ -975,6 +975,7 @@
 	NOTE: ImageMagick-6: https://github.com/ImageMagick/ImageMagick/commit/4eae304e773bad8a876c3c26fdffac24d4253ae4
 CVE-2017-14348 (LibRaw before 0.18.4 has a heap-based Buffer Overflow in the ...)
 	- libraw <unfixed>
+	[wheezy] - libraw <not-affected> (Vulnerable code not present)
 	NOTE: https://github.com/LibRaw/LibRaw/issues/100
 	NOTE: https://github.com/LibRaw/LibRaw/commit/8303e74b0567806dd5f16fc39aab70fe928de1a2
 CVE-2017-14340 (The XFS_IS_REALTIME_INODE macro in fs/xfs/xfs_linux.h in the Linux ...)




More information about the Secure-testing-commits mailing list