[Git][security-tracker-team/security-tracker][master] Add CVE-2020-21679/graphicsmagick

Salvatore Bonaccorso (@carnil) carnil at debian.org
Fri Aug 25 20:49:59 BST 2023



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
0d8b5ab0 by Salvatore Bonaccorso at 2023-08-25T21:49:13+02:00
Add CVE-2020-21679/graphicsmagick

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -220710,7 +220710,9 @@ CVE-2020-21680 (A stack-based buffer overflow in the put_arrow() component in ge
 	NOTE: https://sourceforge.net/p/mcj/fig2dev/ci/100e2789f8106f9cc0f7e4319c4ee7bda076c3ac/ (3.2.8)
 	NOTE: Crash in CLI tool, no security impact
 CVE-2020-21679 (Buffer Overflow vulnerability in WritePCXImage function in pcx.c in Gr ...)
-	TODO: check
+	- graphicsmagick 1.4+really1.3.34+hg16181-1
+	NOTE: https://sourceforge.net/p/graphicsmagick/bugs/619/
+	NOTE: http://hg.graphicsmagick.org/hg/GraphicsMagick/rev/bd13b1d335f3
 CVE-2020-21678 (A global buffer overflow in the genmp_writefontmacro_latex component i ...)
 	- fig2dev 1:3.2.8-1 (unimportant)
 	- transfig <removed>



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/0d8b5ab09fe188f29be466a8fee7b0d8ded7f50e

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/0d8b5ab09fe188f29be466a8fee7b0d8ded7f50e
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20230825/abb2832d/attachment-0001.htm>


More information about the debian-security-tracker-commits mailing list