[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] Add CVE-2017-18013/tiff

Salvatore Bonaccorso carnil at debian.org
Mon Jan 1 09:55:39 UTC 2018


Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
d477fa14 by Salvatore Bonaccorso at 2018-01-01T10:55:10+01:00
Add CVE-2017-18013/tiff

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
--- a/data/CVE/list
+++ b/data/CVE/list
@@ -3,7 +3,9 @@ CVE-2018-3811 (SQL Injection vulnerability in the Oturia Smart Google Code Inser
 CVE-2018-3810 (Authentication Bypass vulnerability in the Oturia Smart Google Code ...)
 	TODO: check
 CVE-2017-18013 (In LibTIFF 4.0.9, there is a Null-Pointer Dereference in the ...)
-	TODO: check
+	- tiff <unfixed>
+	NOTE: http://bugzilla.maptools.org/show_bug.cgi?id=2770
+	NOTE: https://gitlab.com/libtiff/libtiff/commit/c6f41df7b581402dfba3c19a1e3df4454c551a01
 CVE-2017-18012 (The Z-URL Preview plugin 1.6.1 for WordPress has XSS via the ...)
 	TODO: check
 CVE-2017-18011 (The MyCBGenie Affiliate Ads for Clickbank Products plugin through 1.6 ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/d477fa14d50fec456b5a6f2842d56fb1cb2b8256

---
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/d477fa14d50fec456b5a6f2842d56fb1cb2b8256
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.alioth.debian.org/pipermail/secure-testing-commits/attachments/20180101/f2cac569/attachment-0001.html>


More information about the Secure-testing-commits mailing list