[Git][security-tracker-team/security-tracker][master] Add upstream commits for CVE-2018-12601 & CVE-2018-12578 (sam2p).

Chris Lamb lamby at debian.org
Sat Jul 21 13:36:43 BST 2018


Chris Lamb pushed to branch master at Debian Security Tracker / security-tracker


Commits:
10ce08dd by Chris Lamb at 2018-07-21T20:35:41+08:00
Add upstream commits for CVE-2018-12601 & CVE-2018-12578 (sam2p).

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
--- a/data/CVE/list
+++ b/data/CVE/list
@@ -4499,6 +4499,7 @@ CVE-2018-12602 (A CSRF vulnerability exists in LFCMS 3.7.0: users can be added .
 CVE-2018-12601 (There is a heap-based buffer overflow in ReadImage in input-tga.ci in ...)
 	- sam2p <removed>
 	NOTE: https://github.com/pts/sam2p/issues/41
+	NOTE: https://github.com/pts/sam2p/commit/8b2b7151991e07ef262857c2325e95c3b2867f80
 CVE-2018-12600 (In ImageMagick 7.0.8-3 Q16, ReadDIBImage and WriteDIBImage in ...)
 	{DSA-4245-1 DLA-1394-1}
 	[experimental] - imagemagick 8:6.9.10.2+dfsg-1
@@ -4562,6 +4563,7 @@ CVE-2018-12579
 CVE-2018-12578 (There is a heap-based buffer overflow in bmp_compress1_row in ...)
 	- sam2p <removed>
 	NOTE: https://github.com/pts/sam2p/issues/39
+	NOTE: https://github.com/pts/sam2p/commit/22e7a17e70e5f5eedf466b0b1855c8c954061a51
 CVE-2018-12577 (The Ping and Traceroute features on TP-Link TL-WR841N v13 00000001 ...)
 	NOT-FOR-US: TP-Link
 CVE-2018-12576 (TP-Link TL-WR841N v13 00000001 0.9.1 4.16 v0001.0 Build 180119 ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/10ce08dd2d6a6a2092e163ed94c6ada99bfac930

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/10ce08dd2d6a6a2092e163ed94c6ada99bfac930
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20180721/397da201/attachment.html>


More information about the debian-security-tracker-commits mailing list