[Git][security-tracker-team/security-tracker][master] Add references for CVE-2020-19668 for upstream issues to new fork

Salvatore Bonaccorso (@carnil) carnil at debian.org
Wed Jan 12 16:12:08 GMT 2022



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
32b27249 by Salvatore Bonaccorso at 2022-01-12T17:11:25+01:00
Add references for CVE-2020-19668 for upstream issues to new fork

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -102756,7 +102756,9 @@ CVE-2020-19668 (Unverified indexs into the array lead to out of bound access in
 	[buster] - libsixel <no-dsa> (Minor issue)
 	[stretch] - libsixel <no-dsa> (Minor issue)
 	NOTE: https://github.com/saitoha/libsixel/issues/136
-	NOTE: https://github.com/libsixel/libsixel/commit/05e5d21d065c663ec7a83d185974f4c252314968
+	NOTE: https://github.com/libsixel/libsixel/issues/7
+	NOTE: https://github.com/libsixel/libsixel/pull/8
+	NOTE: https://github.com/libsixel/libsixel/commit/05e5d21d065c663ec7a83d185974f4c252314968 (v1.9.0)
 	NOTE: Since 1.10.3-1 the Debian package moved from https://github.com/saitoha/libsixel to https://github.com/libsixel/libsixel fork
 CVE-2020-19667 (Stack-based buffer overflow and unconditional jump in ReadXPMImage in  ...)
 	{DLA-2523-1}



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/32b272495173af3a55832a09c508c52f63f009f4

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/32b272495173af3a55832a09c508c52f63f009f4
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20220112/d0918363/attachment.htm>


More information about the debian-security-tracker-commits mailing list