[Git][security-tracker-team/security-tracker][master] Add more information on CVE-2018-17000/tiff

Salvatore Bonaccorso carnil at debian.org
Sat Feb 2 16:43:14 GMT 2019


Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
9032c851 by Salvatore Bonaccorso at 2019-02-02T16:42:43Z
Add more information on CVE-2018-17000/tiff

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -25060,7 +25060,8 @@ CVE-2018-17000 (A NULL pointer dereference in the function _TIFFmemcmp at tif_un
 	- tiff3 <removed>
 	[jessie] - tiff <postponed> (Can be fixed along in future DLA)
 	NOTE: http://bugzilla.maptools.org/show_bug.cgi?id=2811
-	NOTE: Proposed patch: https://gitlab.com/libtiff/libtiff/merge_requests/54
+	NOTE: Relates to http://bugzilla.maptools.org/show_bug.cgi?id=2833
+	NOTE: Fixed by: https://gitlab.com/libtiff/libtiff/commit/802d3cbf3043be5dce5317e140ccb1c17a6a2d39
 CVE-2018-16999 (Netwide Assembler (NASM) 2.14rc15 has an invalid memory write ...)
 	- nasm 2.14-1 (unimportant)
 	NOTE: https://bugzilla.nasm.us/show_bug.cgi?id=3392508



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/9032c8514a994d2eefd7a275d2532fe1fad48fde

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/9032c8514a994d2eefd7a275d2532fe1fad48fde
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20190202/0c9f4e02/attachment.html>


More information about the debian-security-tracker-commits mailing list