[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] Add CVE-2018-5357/imagemagick

Salvatore Bonaccorso carnil at debian.org
Sat Jan 13 07:17:52 UTC 2018


Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
483c601c by Salvatore Bonaccorso at 2018-01-13T08:17:29+01:00
Add CVE-2018-5357/imagemagick

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
--- a/data/CVE/list
+++ b/data/CVE/list
@@ -409,7 +409,11 @@ CVE-2018-5358 (ImageMagick 7.0.7-22 Q16 has memory leaks in the EncodeImageAttri
 	NOTE: https://github.com/ImageMagick/ImageMagick/commit/4e72d445220287727d7886a5f17a10caf944a802
 	NOTE: ImageMagick-6: https://github.com/ImageMagick/ImageMagick/commit/ed80c93e4cbf2727ead75fd8bd5e5d9ecbe762f9
 CVE-2018-5357 (ImageMagick 7.0.7-22 Q16 has memory leaks in the ReadDCMImage function ...)
-	TODO: check
+	- imagemagick <unfixed> (unimportant)
+	NOTE: https://github.com/ImageMagick/ImageMagick/issues/941
+	NOTE: ImageMagick-6: https://github.com/ImageMagick/ImageMagick/commit/4b60459202805cb4c9a96cdeeb70db594b1d3c72
+	NOTE: Imagemagick-6: https://github.com/ImageMagick/ImageMagick/commit/152d81b91fc83d72da1989518685b1d70fc5e60a
+	NOTE: https://github.com/ImageMagick/ImageMagick/commit/fcce81295235f39aace870e1ed4785eec40790c1
 CVE-2018-5356
 	RESERVED
 CVE-2018-5355



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/483c601c6c33251831e237368425f092bb4a5f5a

---
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/483c601c6c33251831e237368425f092bb4a5f5a
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.alioth.debian.org/pipermail/secure-testing-commits/attachments/20180113/154120b6/attachment.html>


More information about the Secure-testing-commits mailing list