[Git][security-tracker-team/security-tracker][master] Add two more openimageio issues

Salvatore Bonaccorso (@carnil) carnil at debian.org
Fri Dec 30 08:28:31 GMT 2022



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
0c49b582 by Salvatore Bonaccorso at 2022-12-30T09:28:04+01:00
Add two more openimageio issues

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -17556,7 +17556,8 @@ CVE-2022-43605
 CVE-2022-43604
 	RESERVED
 CVE-2022-43603 (A denial of service vulnerability exists in the ZfileOutput::close() f ...)
-	TODO: check
+	- openimageio <unfixed>
+	NOTE: https://talosintelligence.com/vulnerability_reports/TALOS-2022-1657
 CVE-2022-43602 (Multiple code execution vulnerabilities exist in the IFFOutput::close( ...)
 	- openimageio <unfixed> (bug #1027143)
 	NOTE: https://talosintelligence.com/vulnerability_reports/TALOS-2022-1656
@@ -20732,7 +20733,8 @@ CVE-2022-42470
 CVE-2022-42469
 	RESERVED
 CVE-2022-41999 (A denial of service vulnerability exists in the DDS native tile readin ...)
-	TODO: check
+	- openimageio <unfixed>
+	NOTE: https://talosintelligence.com/vulnerability_reports/TALOS-2022-1635
 CVE-2022-41991
 	RESERVED
 CVE-2022-41988 (An information disclosure vulnerability exists in the OpenImageIO::dec ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/0c49b582b8181cb6510b9ceabb49553c34211a9b

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/0c49b582b8181cb6510b9ceabb49553c34211a9b
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20221230/0e60d549/attachment.htm>


More information about the debian-security-tracker-commits mailing list