Moritz Muehlenhoff pushed to branch master at Debian Security Tracker /
security-tracker
Commits:
5a9873fd by Moritz Muehlenhoff at 2018-05-31T17:36:26+02:00
Revert "also cant reproduce CVE-2017-7313 on jessie"
"Can't reproduce" is not a valid status to add for
<not-affected>,
needs to be analysed on the source code level.
This reverts commit 72942f0d30a12d543a0b7a425b18fc948212c1a7.
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
--- a/data/CVE/list
+++ b/data/CVE/list
@@ -117815,7 +117815,7 @@ CVE-2015-XXXX [Privilege escalation via core-gui]
NOTE:
http://pf.itd.nrl.navy.mil/pipermail/core-users/2015-August/001837.html
CVE-2015-7313 (LibTIFF allows remote attackers to cause a denial of service
(memory ...)
- tiff 4.0.7-1 (bug #800124)
- [jessie] - tiff <not-affected> (Can't reproduce)
+ [jessie] - tiff <ignored> (Minor issue)
[wheezy] - tiff <not-affected> (Can't reproduce)
[squeeze] - tiff <not-affected> (Can't reproduce the issue, file is
rejected with "Integer overflow in TIFFVStripSize" and "cannot handle zero
strip size.")
- tiff3 <removed>
View it on GitLab:
https://salsa.debian.org/security-tracker-team/security-tracker/commit/5a9873fdfca52957c5ca43390958bf1d114dfa14
--
View it on GitLab:
https://salsa.debian.org/security-tracker-team/security-tracker/commit/5a9873fdfca52957c5ca43390958bf1d114dfa14
You're receiving this email because of your account on salsa.debian.org.
_______________________________________________
debian-security-tracker-commits mailing list
[email protected]
https://alioth-lists.debian.net/cgi-bin/mailman/listinfo/debian-security-tracker-commits