[Git][security-tracker-team/security-tracker][master] Mark CVE-2020-12672 as postponed for stretch and buster

Salvatore Bonaccorso carnil at debian.org
Wed Jun 3 21:07:36 BST 2020



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
f9c70276 by Salvatore Bonaccorso at 2020-06-03T22:06:50+02:00
Mark CVE-2020-12672 as postponed for stretch and buster

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -2531,6 +2531,8 @@ CVE-2020-12689 (An issue was discovered in OpenStack Keystone before 15.0.1, and
 	NOTE: https://www.openwall.com/lists/oss-security/2020/05/06/5
 CVE-2020-12672 (GraphicsMagick through 1.3.35 has a heap-based buffer overflow in Read ...)
 	- graphicsmagick 1.4+really1.3.35-2 (bug #960000)
+	[buster] - graphicsmagick <postponed> (Minor issue; can be fixed along in future DSA)
+	[stretch] - graphicsmagick <postponed> (Minor issue; can be fixed along in future DSA)
 	NOTE: https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=19025
 	NOTE: Fixed by: https://sourceforge.net/p/graphicsmagick/code/ci/50395430a37188d0d197e71bd85ed6dd0f649ee3/
 CVE-2020-12671



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/f9c702760c012ba9c7aa4cbd93c7f920e79e953d

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/f9c702760c012ba9c7aa4cbd93c7f920e79e953d
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20200603/d67d6c09/attachment.html>


More information about the debian-security-tracker-commits mailing list