[Git][security-tracker-team/security-tracker][master] 2 commits: Add fixing commit for CVE-2017-9146/libytnef

Salvatore Bonaccorso carnil at debian.org
Sun Jan 6 12:46:32 GMT 2019


Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
120019f8 by Salvatore Bonaccorso at 2019-01-06T12:45:12Z
Add fixing commit for CVE-2017-9146/libytnef

- - - - -
bb99e75c by Salvatore Bonaccorso at 2019-01-06T12:45:41Z
Add fixed version for CVE-2017-9146/libytnef

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -92242,11 +92242,12 @@ CVE-2017-9147 (LibTIFF 4.0.7 has an invalid read in the _TIFFVGetField function
 	- tiff3 <removed>
 	NOTE: http://bugzilla.maptools.org/show_bug.cgi?id=2693
 CVE-2017-9146 (The TNEFFillMapi function in lib/ytnef.c in libytnef in ytnef through ...)
-	- libytnef <unfixed> (bug #862707)
+	- libytnef 1.9.3-1 (bug #862707)
 	[stretch] - libytnef <no-dsa> (Minor issue, can be fixed via a point update)
 	[jessie] - libytnef <no-dsa> (Minor issue, can be fixed via a point update)
 	[wheezy] - libytnef <no-dsa> (Minor issue)
 	NOTE: https://github.com/Yeraze/ytnef/issues/47
+	NOTE: https://github.com/Yeraze/ytnef/commit/c576639e7e6bd9c7de0a288b9f94590d34ac9215
 CVE-2017-9145 (TikiFilter.php in Tiki Wiki CMS Groupware 12.x through 16.x does not ...)
 	- tikiwiki <removed>
 CVE-2017-11352 (In ImageMagick before 7.0.5-10, a crafted RLE image can trigger a crash ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/compare/24ca91b656d424f890215e1083f4137cd5bdb984...bb99e75cce2801776f197336599f558edc05ccab

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/compare/24ca91b656d424f890215e1083f4137cd5bdb984...bb99e75cce2801776f197336599f558edc05ccab
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20190106/931dd077/attachment.html>


More information about the debian-security-tracker-commits mailing list