[Git][security-tracker-team/security-tracker][master] new abcm2ps bug

Moritz Muehlenhoff jmm at debian.org
Mon May 7 09:45:19 BST 2018


Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker


Commits:
311ba851 by Moritz Muehlenhoff at 2018-05-07T10:44:44+02:00
new abcm2ps bug

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
--- a/data/CVE/list
+++ b/data/CVE/list
@@ -45,7 +45,10 @@ CVE-2018-10773 (NULL pointer deference in the addsn function in serialno.c in ..
 CVE-2018-10772 (The tEXtToDataBuf function in pngimage.cpp in Exiv2 through 0.26 allows ...)
 	TODO: check
 CVE-2018-10771 (Stack-based buffer overflow in the get_key function in parse.c in ...)
-	TODO: check
+	- abcm2ps <unfixed> (unimportant)
+	NOTE: https://github.com/leesavide/abcm2ps/issues/17
+	NOTE: https://github.com/leesavide/abcm2ps/commit/dc0372993674d0b50fedfbf7b9fad1239b8efc5f
+	NOTE: Crash in CLI tool (neutralised by toolchain hardening), no security impact
 CVE-2018-10770
 	RESERVED
 CVE-2018-10769



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/311ba851a2b3b54438fa1a3bcae5c00ceb5370f2

---
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/311ba851a2b3b54438fa1a3bcae5c00ceb5370f2
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20180507/72ac3afb/attachment.html>


More information about the debian-security-tracker-commits mailing list