[Git][security-tracker-team/security-tracker][master] Mark two openimageio issues as fixed with unstable upload
Salvatore Bonaccorso (@carnil)
carnil at debian.org
Sat Jan 28 08:34:43 GMT 2023
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits:
21f4a94b by Salvatore Bonaccorso at 2023-01-28T09:34:06+01:00
Mark two openimageio issues as fixed with unstable upload
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -24134,7 +24134,7 @@ CVE-2022-43604
RESERVED
CVE-2022-43603 (A denial of service vulnerability exists in the ZfileOutput::close() f ...)
[experimental] - openimageio 2.4.7.1+dfsg-1
- - openimageio <unfixed> (bug #1027808)
+ - openimageio 2.4.7.1+dfsg-2 (bug #1027808)
NOTE: https://talosintelligence.com/vulnerability_reports/TALOS-2022-1657
NOTE: https://github.com/OpenImageIO/oiio/pull/3670
CVE-2022-43602 (Multiple code execution vulnerabilities exist in the IFFOutput::close( ...)
@@ -27341,7 +27341,7 @@ CVE-2022-42469
RESERVED
CVE-2022-41999 (A denial of service vulnerability exists in the DDS native tile readin ...)
[experimental] - openimageio 2.4.7.1+dfsg-1
- - openimageio <unfixed> (bug #1027808)
+ - openimageio 2.4.7.1+dfsg-2 (bug #1027808)
NOTE: https://talosintelligence.com/vulnerability_reports/TALOS-2022-1635
NOTE: https://github.com/OpenImageIO/oiio/pull/3625
CVE-2022-41991 (A heap-based buffer overflow vulnerability exists in the m2m DELETE_FI ...)
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/21f4a94bb784612af18e2ff950f3cd7960146d08
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/21f4a94bb784612af18e2ff950f3cd7960146d08
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20230128/6a88ce24/attachment-0001.htm>
More information about the debian-security-tracker-commits
mailing list