[Git][security-tracker-team/security-tracker][master] Add CVE-2019-7175/imagemagick

Salvatore Bonaccorso carnil at debian.org
Fri Mar 8 13:00:48 GMT 2019


Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
87e00b59 by Salvatore Bonaccorso at 2019-03-08T13:00:18Z
Add CVE-2019-7175/imagemagick

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -5714,7 +5714,9 @@ CVE-2019-7176
 	- gitlab 11.5.10+dfsg-1 (bug #921059)
 	NOTE: https://about.gitlab.com/2019/01/31/security-release-gitlab-11-dot-7-dot-3-released/
 CVE-2019-7175 (In ImageMagick before 7.0.8-25, some memory leaks exist in DecodeImage ...)
-	TODO: check
+	- imagemagick <unfixed> (unimportant)
+	NOTE: https://github.com/ImageMagick/ImageMagick/commit/1e6a3ace073c9ec9c71e439c111d23c6e66cb6ae
+	NOTE: https://github.com/ImageMagick/ImageMagick/issues/1450
 CVE-2019-7174
 	RESERVED
 CVE-2019-7173 (A stored-self XSS exists in Croogo through v3.0.5, allowing an attacker ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/87e00b59697f379ca16bef1c239d284630855fe2

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/87e00b59697f379ca16bef1c239d284630855fe2
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20190308/9305b5c9/attachment.html>


More information about the debian-security-tracker-commits mailing list