[Secure-testing-commits] r56183 - in data: . CVE

Moritz Muehlenhoff jmm at moszumanska.debian.org
Wed Sep 27 09:20:23 UTC 2017


Author: jmm
Date: 2017-09-27 09:20:23 +0000 (Wed, 27 Sep 2017)
New Revision: 56183

Modified:
   data/CVE/list
   data/dsa-needed.txt
Log:
new ffmpeg issue
add nautilus to dsa-needed


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-09-27 09:10:19 UTC (rev 56182)
+++ data/CVE/list	2017-09-27 09:20:23 UTC (rev 56183)
@@ -3,7 +3,10 @@
 CVE-2017-14768
 	RESERVED
 CVE-2017-14767 (The sdp_parse_fmtp_config_h264 function in libavformat/rtpdec_h264.c in ...)
-	TODO: check
+	- ffmpeg 7:3.3.4-1
+	- libav <undetermined>
+	NOTE: https://github.com/FFmpeg/FFmpeg/commit/837cb4325b712ff1aab531bf41668933f61d75d2
+	NOTE: Fixed in 3.2.8
 CVE-2017-14766 (The Simple Student Result plugin before 1.6.4 for WordPress has an ...)
 	TODO: check
 CVE-2017-14765 (In GeniXCMS 1.1.4, gxadmin/index.php has XSS via the Menu ID field in a ...)

Modified: data/dsa-needed.txt
===================================================================
--- data/dsa-needed.txt	2017-09-27 09:10:19 UTC (rev 56182)
+++ data/dsa-needed.txt	2017-09-27 09:20:23 UTC (rev 56183)
@@ -48,6 +48,8 @@
 linux
   Wait until more issues have piled up
 --
+nautilus
+--
 openjpeg2
 --
 php-horde-image




More information about the Secure-testing-commits mailing list