[Git][security-tracker-team/security-tracker][master] tiff DSA

Moritz Muehlenhoff jmm at debian.org
Tue Jan 21 21:43:18 GMT 2020



Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker


Commits:
953d2623 by Moritz Muehlenhoff at 2020-01-21T22:43:01+01:00
tiff DSA

- - - - -


3 changed files:

- data/CVE/list
- data/DSA/list
- data/dsa-needed.txt


Changes:

=====================================
data/CVE/list
=====================================
@@ -29734,7 +29734,6 @@ CVE-2019-14974 (SugarCRM Enterprise 9.0.0 allows mobile/error-not-supported-plat
 CVE-2019-14973 (_TIFFCheckMalloc and _TIFFCheckRealloc in tif_aux.c in LibTIFF through ...)
 	{DLA-1897-1}
 	- tiff 4.0.10+git190814-1 (low; bug #934780)
-	[buster] - tiff <no-dsa> (Minor issue)
 	[stretch] - tiff <no-dsa> (Minor issue)
 	- tiff3 <removed>
 	NOTE: https://gitlab.com/libtiff/libtiff/merge_requests/90


=====================================
data/DSA/list
=====================================
@@ -1,3 +1,6 @@
+[21 Jan 2020] DSA-4608-1 tiff - security update
+	{CVE-2019-14973 CVE-2019-17546}
+	[buster] - tiff 4.1.0+git191117-2~deb10u1
 [20 Jan 2020] DSA-4607-1 openconnect - security update
 	{CVE-2019-16239}
 	[stretch] - openconnect 7.08-1+deb9u1


=====================================
data/dsa-needed.txt
=====================================
@@ -50,8 +50,7 @@ smarty3/oldstable
 --
 squid3/oldstable
 --
-tiff (jmm)
-  Maintainer working on updates
+tiff/oldstable
 --
 xcftools (hle)
 --



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/953d2623081f0c5fbe04cdc310c5927e119d5372

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/953d2623081f0c5fbe04cdc310c5927e119d5372
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20200121/61c6cd79/attachment-0001.html>


More information about the debian-security-tracker-commits mailing list