[Secure-testing-commits] r56150 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Tue Sep 26 09:18:31 UTC 2017


Author: carnil
Date: 2017-09-26 09:18:31 +0000 (Tue, 26 Sep 2017)
New Revision: 56150

Modified:
   data/CVE/list
Log:
Add CVE-2017-14733/graphicsmagick

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-09-26 09:17:27 UTC (rev 56149)
+++ data/CVE/list	2017-09-26 09:18:31 UTC (rev 56150)
@@ -26,7 +26,9 @@
 CVE-2017-14734 (The build_msps function in libbpg.c in libbpg 0.9.7 allows remote ...)
 	TODO: check
 CVE-2017-14733 (ReadRLEImage in coders/rle.c in GraphicsMagick 1.3.26 mishandles RLE ...)
-	TODO: check
+	- graphicsmagick <unfixed>
+	NOTE: http://hg.graphicsmagick.org/hg/GraphicsMagick?cmd=changeset;node=5381c71724e3
+	NOTE: https://sourceforge.net/p/graphicsmagick/bugs/458/
 CVE-2017-14732
 	RESERVED
 CVE-2017-14731 (ofx_proc_file in ofx_preproc.cpp in LibOFX 0.9.12 allows remote ...)




More information about the Secure-testing-commits mailing list