Mike Gabriel pushed to branch master at Debian Security Tracker /
security-tracker
Commits:
136b11de by Mike Gabriel at 2019-01-16T14:54:00Z
Revert "mark CVE-2018-19758 as no-dsa for Jessie" (already fix in
jessie, see DLA-1632-1)
This reverts commit e525b41fc2897cdb4c9ee609467f65475e4a5028.
- - - - -
3d6e64ef by Mike Gabriel at 2019-01-16T14:58:45Z
data/CVE/list: Fix CVE-2018-19758 (libsndfile). Add fixed jessie version.
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -12814,7 +12814,7 @@ CVE-2018-19758 (There is a heap-based buffer over-read
at wav.c in wav_write_hea
{DLA-1632-1}
- libsndfile <unfixed> (bug #917416)
[stretch] - libsndfile <no-dsa> (Minor issue)
- [jessie] - libsndfile <no-dsa> (Minor issue)
+ [jessie] - libsndfile 1.0.25-9.1+deb8u3
NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=1643812
NOTE: https://github.com/erikd/libsndfile/issues/435
NOTE:
https://github.com/erikd/libsndfile/commit/42132c543358cee9f7c3e9e9b15bb6c1063a608e
View it on GitLab:
https://salsa.debian.org/security-tracker-team/security-tracker/compare/61f7f62fe967864921999ae58666711e1185b281...3d6e64efa657c91754604a29cfac0ebf3ce37bf1
--
View it on GitLab:
https://salsa.debian.org/security-tracker-team/security-tracker/compare/61f7f62fe967864921999ae58666711e1185b281...3d6e64efa657c91754604a29cfac0ebf3ce37bf1
You're receiving this email because of your account on salsa.debian.org.
_______________________________________________
debian-security-tracker-commits mailing list
[email protected]
https://alioth-lists.debian.net/cgi-bin/mailman/listinfo/debian-security-tracker-commits