[Git][security-tracker-team/security-tracker][master] Add CVE-2019-13618/gpac
Salvatore Bonaccorso
carnil at debian.org
Tue Jul 16 21:45:40 BST 2019
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits:
01786ced by Salvatore Bonaccorso at 2019-07-16T20:45:05Z
Add CVE-2019-13618/gpac
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -1,5 +1,7 @@
CVE-2019-13618 (In GPAC before 0.8.0, isomedia/isom_read.c in libgpac.a has a heap-bas ...)
- TODO: check
+ - gpac <unfixed>
+ NOTE: https://github.com/gpac/gpac/issues/1250
+ NOTE: https://github.com/gpac/gpac/commit/c23d54ed15a70b4543e3191e6ead5097cda0878b
CVE-2019-13617 (njs through 0.3.3, used in NGINX, has a heap-based buffer over-read in ...)
TODO: check
CVE-2019-13616 (SDL (Simple DirectMedia Layer) through 1.2.15 and 2.x through 2.0.9 ha ...)
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/01786ced72389e9f47984e6696f520cf1974d659
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/01786ced72389e9f47984e6696f520cf1974d659
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20190716/34e2ca0b/attachment.html>
More information about the debian-security-tracker-commits
mailing list