[Git][security-tracker-team/security-tracker][master] Add CVE-2020-1865{1,2}/exempi

Salvatore Bonaccorso (@carnil) carnil at debian.org
Sat Aug 26 09:02:08 BST 2023



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
95af5f35 by Salvatore Bonaccorso at 2023-08-26T10:01:36+02:00
Add CVE-2020-1865{1,2}/exempi

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -227303,9 +227303,13 @@ CVE-2020-18654 (Cross Site Scripting (XSS) in Wuzhi CMS v4.1.0 allows remote att
 CVE-2020-18653
 	RESERVED
 CVE-2020-18652 (Buffer Overflow vulnerability in WEBP_Support.cpp in exempi 2.5.0 and  ...)
-	TODO: check
+	- exempi 2.5.1-1
+	NOTE: https://gitlab.freedesktop.org/libopenraw/exempi/-/issues/12
+	NOTE: https://gitlab.freedesktop.org/libopenraw/exempi/-/commit/acee2894ceb91616543927c2a6e45050c60f98f7 (2.5.1)
 CVE-2020-18651 (Buffer Overflow vulnerability in function ID3_Support::ID3v2Frame::get ...)
-	TODO: check
+	- exempi 2.5.1-1
+	NOTE: https://gitlab.freedesktop.org/libopenraw/exempi/-/issues/13
+	NOTE: https://gitlab.freedesktop.org/libopenraw/exempi/-/commit/fdd4765a699f9700850098b43b9798b933acb32f (2.5.1)
 CVE-2020-18650
 	RESERVED
 CVE-2020-18649



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/95af5f35e94192c463ed13dab39b3d3235299b57

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/95af5f35e94192c463ed13dab39b3d3235299b57
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20230826/2e0793cf/attachment.htm>


More information about the debian-security-tracker-commits mailing list