[Git][security-tracker-team/security-tracker][master] Add fixed version for CVE-2017-6888/flac

Salvatore Bonaccorso carnil at debian.org
Wed May 2 07:59:46 BST 2018


Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
3b6550f4 by Salvatore Bonaccorso at 2018-05-02T08:59:09+02:00
Add fixed version for CVE-2017-6888/flac

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
--- a/data/CVE/list
+++ b/data/CVE/list
@@ -60480,7 +60480,7 @@ CVE-2017-6890 (A boundary error within the "foveon_load_camf()" functi
 CVE-2017-6889 (An integer overflow error within the "foveon_load_camf()" function ...)
 	NOT-FOR-US: libraw demosaic extension (not packaged in Debian)
 CVE-2017-6888 (An error in the "read_metadata_vorbiscomment_()" function ...)
-	- flac <unfixed> (low; bug #897015)
+	- flac 1.3.2-2 (low; bug #897015)
 	[stretch] - flac <no-dsa> (Minor issue)
 	[jessie] - flac <no-dsa> (Minor issue)
 	NOTE: https://secuniaresearch.flexerasoftware.com/secunia_research/2017-7/



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/3b6550f4235621e488af2af5aceeddfbfad8b927

---
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/3b6550f4235621e488af2af5aceeddfbfad8b927
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20180502/516274d9/attachment.html>


More information about the debian-security-tracker-commits mailing list