[Git][security-tracker-team/security-tracker][master] Add CVE-2018-14550/libpng

Salvatore Bonaccorso carnil at debian.org
Fri Jul 27 07:30:07 BST 2018


Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
a65d6f95 by Salvatore Bonaccorso at 2018-07-27T08:29:41+02:00
Add CVE-2018-14550/libpng

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
--- a/data/CVE/list
+++ b/data/CVE/list
@@ -181,8 +181,11 @@ CVE-2018-14551 (The ReadMATImageV4 function in coders/mat.c in ImageMagick 7.0.8
 	NOTE: https://github.com/ImageMagick/ImageMagick/issues/1221
 	NOTE: https://github.com/ImageMagick/ImageMagick/commit/389ecc365a7c61404ba078a72c3fa5a3cf1b4101
 	NOTE: ImageMagick6: https://github.com/ImageMagick/ImageMagick6/commit/db7a4be592328af06d776ce3bab24b8c6de5be20
-CVE-2018-14550
+CVE-2018-14550 [stack-based buffer overflow in contrib/pngminus/pnm2png.c:get_token()]
 	RESERVED
+	- libpng1.6 <unfixed> (unimportant)
+	- libpng <removed> (unimportant)
+	NOTE: https://github.com/glennrp/libpng/issues/246
 CVE-2018-14549 (An issue has been found in libwav through 2017-04-20. It is a SEGV in ...)
 	NOT-FOR-US: libwav
 CVE-2018-14548



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/a65d6f9530a12c8337cc9f601b5e2ce4747b7178

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/a65d6f9530a12c8337cc9f601b5e2ce4747b7178
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20180727/afd8abbe/attachment.html>


More information about the debian-security-tracker-commits mailing list