[Git][security-tracker-team/security-tracker][master] Add another batch of openimageio issues as reported by TALOS project

Salvatore Bonaccorso (@carnil) carnil at debian.org
Tue Dec 27 08:58:04 GMT 2022



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
9a8b64fc by Salvatore Bonaccorso at 2022-12-27T09:57:33+01:00
Add another batch of openimageio issues as reported by TALOS project

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -16510,27 +16510,38 @@ CVE-2022-43604
 CVE-2022-43603 (A denial of service vulnerability exists in the ZfileOutput::close() f ...)
 	TODO: check
 CVE-2022-43602 (Multiple code execution vulnerabilities exist in the IFFOutput::close( ...)
-	TODO: check
+	- openimageio <unfixed>
+	NOTE: https://talosintelligence.com/vulnerability_reports/TALOS-2022-1656
 CVE-2022-43601 (Multiple code execution vulnerabilities exist in the IFFOutput::close( ...)
-	TODO: check
+	- openimageio <unfixed>
+	NOTE: https://talosintelligence.com/vulnerability_reports/TALOS-2022-1656
 CVE-2022-43600 (Multiple code execution vulnerabilities exist in the IFFOutput::close( ...)
-	TODO: check
+	- openimageio <unfixed>
+	NOTE: https://talosintelligence.com/vulnerability_reports/TALOS-2022-1656
 CVE-2022-43599 (Multiple code execution vulnerabilities exist in the IFFOutput::close( ...)
-	TODO: check
+	- openimageio <unfixed>
+	NOTE: https://talosintelligence.com/vulnerability_reports/TALOS-2022-1656
 CVE-2022-43598 (Multiple memory corruption vulnerabilities exist in the IFFOutput alig ...)
-	TODO: check
+	- openimageio <unfixed>
+	NOTE: https://talosintelligence.com/vulnerability_reports/TALOS-2022-1655
 CVE-2022-43597 (Multiple memory corruption vulnerabilities exist in the IFFOutput alig ...)
-	TODO: check
+	- openimageio <unfixed>
+	NOTE: https://talosintelligence.com/vulnerability_reports/TALOS-2022-1655
 CVE-2022-43596 (An information disclosure vulnerability exists in the IFFOutput channe ...)
-	TODO: check
+	- openimageio <unfixed>
+	NOTE: https://talosintelligence.com/vulnerability_reports/TALOS-2022-1654
 CVE-2022-43595 (Multiple denial of service vulnerabilities exist in the image output c ...)
-	TODO: check
+	- openimageio <unfixed>
+	NOTE: https://talosintelligence.com/vulnerability_reports/TALOS-2022-1653
 CVE-2022-43594 (Multiple denial of service vulnerabilities exist in the image output c ...)
-	TODO: check
+	- openimageio <unfixed>
+	NOTE: https://talosintelligence.com/vulnerability_reports/TALOS-2022-1653
 CVE-2022-43593 (A denial of service vulnerability exists in the DPXOutput::close() fun ...)
-	TODO: check
+	- openimageio <unfixed>
+	NOTE: https://talosintelligence.com/vulnerability_reports/TALOS-2022-1652
 CVE-2022-43592 (An information disclosure vulnerability exists in the DPXOutput::close ...)
-	TODO: check
+	- openimageio <unfixed>
+	NOTE: https://talosintelligence.com/vulnerability_reports/TALOS-2022-1651
 CVE-2022-43591
 	RESERVED
 CVE-2022-43590 (A null pointer dereference vulnerability exists in the handle_ioctl_0x ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/9a8b64fc72a7a46bf5b46f40e2a91dde39bf0ace

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/9a8b64fc72a7a46bf5b46f40e2a91dde39bf0ace
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20221227/9ca6660a/attachment.htm>


More information about the debian-security-tracker-commits mailing list