[Git][security-tracker-team/security-tracker][master] record jbig2enc fixes

Moritz Muehlenhoff (@jmm) jmm at debian.org
Wed Jan 29 09:17:46 GMT 2025



Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker


Commits:
01ac3ec0 by Moritz Muehlenhoff at 2025-01-29T10:17:13+01:00
record jbig2enc fixes

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -119058,11 +119058,13 @@ CVE-2023-47005
 CVE-2023-46492 (Cross Site Scripting vulnerability in MLDB.ai v.2017.04.17.0 allows a  ...)
 	NOT-FOR-US: MLDB.ai
 CVE-2023-46363 (jbig2enc v0.28 was discovered to contain a SEGV via jbig2_add_page in  ...)
-	- jbig2enc <unfixed> (bug #1059285)
+	- jbig2enc 0.30-1 (bug #1059285)
 	NOTE: https://github.com/agl/jbig2enc/issues/85
+	NOTE: https://github.com/agl/jbig2enc/commit/8bfab607cdb8554db732a9b8d94f33067788e05f (0.30)
 CVE-2023-46362 (jbig2enc v0.28 was discovered to contain a heap-use-after-free via jbi ...)
-	- jbig2enc <unfixed> (bug #1059284)
+	- jbig2enc 0.30-1 (bug #1059284)
 	NOTE: https://github.com/agl/jbig2enc/issues/84
+	NOTE: https://github.com/agl/jbig2enc/commit/8bfab607cdb8554db732a9b8d94f33067788e05f (0.30)
 CVE-2023-45875 (An issue was discovered in Couchbase Server 7.2.0. There is a private  ...)
 	NOT-FOR-US: Couchbase Server
 CVE-2023-45857 (An issue discovered in Axios 1.5.1 inadvertently reveals the confident ...)
@@ -488516,8 +488518,9 @@ CVE-2018-11232 (The etm_setup_aux function in drivers/hwtracing/coresight/coresi
 CVE-2018-11231 (In the Divido plugin for OpenCart, there is SQL injection. Attackers c ...)
 	NOT-FOR-US: OpenCart plugin
 CVE-2018-11230 (jbig2_add_page in jbig2enc.cc in libjbig2enc.a in jbig2enc 0.29 allows ...)
-	- jbig2enc <unfixed> (bug #1059282)
+	- jbig2enc 0.30-1 (bug #1059282)
 	NOTE: https://github.com/agl/jbig2enc/issues/61
+	NOTE: https://github.com/agl/jbig2enc/commit/8bfab607cdb8554db732a9b8d94f33067788e05f (0.30)
 CVE-2018-11229 (Crestron TSW-1060, TSW-760, TSW-560, TSW-1060-NC, TSW-760-NC, and TSW- ...)
 	NOT-FOR-US: Crestron devices
 CVE-2018-11228 (Crestron TSW-1060, TSW-760, TSW-560, TSW-1060-NC, TSW-760-NC, and TSW- ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/01ac3ec052a049b98adc472d4491749b16e6ca5b

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/01ac3ec052a049b98adc472d4491749b16e6ca5b
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20250129/91e10866/attachment.htm>


More information about the debian-security-tracker-commits mailing list