[Git][security-tracker-team/security-tracker][master] Add CVE-2022-3970/tiff

Salvatore Bonaccorso (@carnil) carnil at debian.org
Sun Nov 13 20:17:55 GMT 2022



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
6821c66e by Salvatore Bonaccorso at 2022-11-13T21:17:34+01:00
Add CVE-2022-3970/tiff

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -15,7 +15,10 @@ CVE-2022-3972 (A vulnerability was found in Pingkon HMS-PHP. It has been rated a
 CVE-2022-3971 (A vulnerability was found in matrix-appservice-irc up to 0.35.1. It ha ...)
 	TODO: check
 CVE-2022-3970 (A vulnerability was found in LibTIFF. It has been classified as critic ...)
-	TODO: check
+	- tiff <unfixed>
+	NOTE: https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=53137
+	NOTE: https://gitlab.com/libtiff/libtiff/-/commit/227500897dfb07fb7d27f7aa570050e62617e3be
+	NOTE: https://oss-fuzz.com/download?testcase_id=5738253143900160
 CVE-2022-3969 (A vulnerability was found in OpenKM up to 6.3.11 and classified as pro ...)
 	NOT-FOR-US: OpenKM
 CVE-2022-3968 (A vulnerability has been found in emlog and classified as problematic. ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/6821c66e150f4347a593f9d2f22a92218f480cae

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/6821c66e150f4347a593f9d2f22a92218f480cae
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20221113/803dd379/attachment.htm>


More information about the debian-security-tracker-commits mailing list