[Git][security-tracker-team/security-tracker][master] Decouple open ghostscript issue from #907332: #907703

Salvatore Bonaccorso carnil at debian.org
Fri Aug 31 16:56:37 BST 2018


Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
b4b1ef09 by Salvatore Bonaccorso at 2018-08-31T15:55:55Z
Decouple open ghostscript issue from #907332: #907703

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -871,8 +871,8 @@ CVE-2018-XXXX [Multiple -dSAFER sandbox bypass vulnerabilities]
 	NOTE: http://git.ghostscript.com/?p=ghostpdl.git;a=commitdiff;h=b326a716
 	NOTE: http://git.ghostscript.com/?p=ghostpdl.git;a=commitdiff;h=78911a01
 	NOTE: http://git.ghostscript.com/?p=ghostpdl.git;a=commitdiff;h=5516c614
-CVE-2018-XXXX [ghostscript followup fixes after the initial release by Artifex]
-	- ghostscript <unfixed> (bug #907332)
+CVE-2018-XXXX [preserve LockSafetyParams in the nulldevice]
+	- ghostscript <unfixed> (bug #907703)
 	NOTE: http://git.ghostscript.com/?p=ghostpdl.git;a=commitdiff;h=79cccf641486
 CVE-2018-15877 (The Plainview Activity Monitor plugin 4.7.11 for WordPress is ...)
 	NOT-FOR-US: Wordpress plugin



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/b4b1ef092b7df963a425d04f55b640a0947541bb

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/b4b1ef092b7df963a425d04f55b640a0947541bb
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20180831/a7c9d471/attachment.html>


More information about the debian-security-tracker-commits mailing list