[Git][security-tracker-team/security-tracker][master] CVE-2015-7700/pngcrush fixed in unstable

Salvatore Bonaccorso carnil at debian.org
Fri Feb 22 09:27:20 GMT 2019


Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
e9c783ea by Salvatore Bonaccorso at 2019-02-22T09:27:08Z
CVE-2015-7700/pngcrush fixed in unstable

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -161384,7 +161384,7 @@ CVE-2015-7701 (Memory leak in the CRYPTO_ASSOC function in ntpd in NTP 4.2.x bef
 	NOTE: https://github.com/ntp-project/ntp/commit/d7cd5e186034340402f1393e0813c7d2b14ea6ca
 	NOTE: https://github.com/ntp-project/ntp/commit/79604d925e4477247eee202155215e7865293809
 CVE-2015-7700 (Double-free vulnerability in the sPLT chunk structure and png.c in ...)
-	- pngcrush <unfixed> (bug #874109)
+	- pngcrush 1.8.13-0.1 (bug #874109)
 	[stretch] - pngcrush <no-dsa> (Minor issue)
 	[jessie] - pngcrush <no-dsa> (Minor issue)
 	[wheezy] - pngcrush <no-dsa> (Minor issue)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/e9c783eabec704105f443a8396f86ff7131919f4

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/e9c783eabec704105f443a8396f86ff7131919f4
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20190222/7769522e/attachment.html>


More information about the debian-security-tracker-commits mailing list