[Git][security-tracker-team/security-tracker][master] CVE-2019-7635/libsdl1.2: clarify notes

Hugo Lefeuvre hle at debian.org
Thu Oct 10 15:27:12 BST 2019



Hugo Lefeuvre pushed to branch master at Debian Security Tracker / security-tracker


Commits:
4f3223e7 by Hugo Lefeuvre at 2019-10-10T14:26:22Z
CVE-2019-7635/libsdl1.2: clarify notes

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -28794,8 +28794,11 @@ CVE-2019-7635 (SDL (Simple DirectMedia Layer) through 1.2.15 and 2.x through 2.0
 	[stretch] - libsdl2-image 2.0.1+dfsg-2+deb9u2
 	NOTE: https://bugzilla.libsdl.org/show_bug.cgi?id=4498
 	NOTE: https://hg.libsdl.org/SDL/rev/7c643f1c1887 (SDL-2)
+	NOTE: two patches initially merged for SDL-1.2:
 	NOTE: https://hg.libsdl.org/SDL/rev/08f3b4992538 (SDL-1.2) (correct)
 	NOTE: https://hg.libsdl.org/SDL/rev/4646533663ae (SDL-1.2) (broken)
+	NOTE: the second one is incorrect as was reverted in
+	NOTE: https://hg.libsdl.org/SDL/rev/33940ce0a0ba
 	NOTE: https://hg.libsdl.org/SDL_image/rev/03bd33e8cb49 (SDL_image-2)
 	NOTE: https://hg.libsdl.org/SDL_image/rev/a3a7cac00d5f (SDL_image-1.2)
 CVE-2018-20764 (A buffer overflow exists in HelpSystems tcpcrypt on Linux, used for Bo ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/4f3223e706c0468f7242fc270ac3cc787d8c1d97

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/4f3223e706c0468f7242fc270ac3cc787d8c1d97
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20191010/9cc04db9/attachment.html>


More information about the debian-security-tracker-commits mailing list