Salvatore Bonaccorso pushed to branch master at Debian Security Tracker /
security-tracker
Commits:
32b27249 by Salvatore Bonaccorso at 2022-01-12T17:11:25+01:00
Add references for CVE-2020-19668 for upstream issues to new fork
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -102756,7 +102756,9 @@ CVE-2020-19668 (Unverified indexs into the array lead
to out of bound access in
[buster] - libsixel <no-dsa> (Minor issue)
[stretch] - libsixel <no-dsa> (Minor issue)
NOTE: https://github.com/saitoha/libsixel/issues/136
- NOTE:
https://github.com/libsixel/libsixel/commit/05e5d21d065c663ec7a83d185974f4c252314968
+ NOTE: https://github.com/libsixel/libsixel/issues/7
+ NOTE: https://github.com/libsixel/libsixel/pull/8
+ NOTE:
https://github.com/libsixel/libsixel/commit/05e5d21d065c663ec7a83d185974f4c252314968
(v1.9.0)
NOTE: Since 1.10.3-1 the Debian package moved from
https://github.com/saitoha/libsixel to https://github.com/libsixel/libsixel fork
CVE-2020-19667 (Stack-based buffer overflow and unconditional jump in
ReadXPMImage in ...)
{DLA-2523-1}
View it on GitLab:
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/32b272495173af3a55832a09c508c52f63f009f4
--
View it on GitLab:
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/32b272495173af3a55832a09c508c52f63f009f4
You're receiving this email because of your account on salsa.debian.org.
_______________________________________________
debian-security-tracker-commits mailing list
[email protected]
https://alioth-lists.debian.net/cgi-bin/mailman/listinfo/debian-security-tracker-commits