Author: carnil
Date: 2017-01-17 05:39:04 +0000 (Tue, 17 Jan 2017)
New Revision: 48123

Modified:
   data/CVE/list
Log:
Track first round of CVEs for imagemagick

Modified: data/CVE/list
===================================================================
--- data/CVE/list       2017-01-16 23:00:07 UTC (rev 48122)
+++ data/CVE/list       2017-01-17 05:39:04 UTC (rev 48123)
@@ -1,15 +1,15 @@
-CVE-2017-XXXX [double free in profile]
+CVE-2017-5506 [double free in profile]
        - imagemagick <unfixed> (bug #851383)
        NOTE: https://github.com/ImageMagick/ImageMagick/issues/354
-       NOTE: CVE Request: 
http://www.openwall.com/lists/oss-security/2017/01/16/6
-CVE-2017-XXXX [memory leak in MPC file handling]
+       NOTE: http://www.openwall.com/lists/oss-security/2017/01/16/6
+CVE-2017-5507 [memory leak in MPC file handling]
        - imagemagick <unfixed> (bug #851382)
        NOTE: 
https://github.com/ImageMagick/ImageMagick/commit/4493d9ca1124564da17f9b628ef9d0f1a6be9738
-       NOTE: CVE Request: 
http://www.openwall.com/lists/oss-security/2017/01/16/6
-CVE-2017-XXXX [Crash - PushQuantumPixel - Heap-Buffer-Overflow (TIFF)]
+       NOTE: http://www.openwall.com/lists/oss-security/2017/01/16/6
+CVE-2017-5508 [Crash - PushQuantumPixel - Heap-Buffer-Overflow (TIFF)]
        - imagemagick <unfixed> (bug #851381)
        NOTE: 
https://www.imagemagick.org/discourse-server/viewtopic.php?f=3&t=31161
-       NOTE: CVE Request: 
http://www.openwall.com/lists/oss-security/2017/01/16/6
+       NOTE: http://www.openwall.com/lists/oss-security/2017/01/16/6
 CVE-2017-XXXX [memory leak in caption and label handling]
        - imagemagick 8:6.9.7.0+dfsg-2 (bug #851380)
        NOTE: 
https://github.com/ImageMagick/ImageMagick/commit/aeff00de228bc5a158c2a975ab47845d8a1db456
@@ -26,14 +26,14 @@
        - imagemagick <unfixed> (bug #851374)
        NOTE: https://github.com/ImageMagick/ImageMagick/issues/347
        NOTE: CVE Request: 
http://www.openwall.com/lists/oss-security/2017/01/16/6
-CVE-2017-XXXX [ipl file missing malloc check]
+CVE-2016-10144 [ipl file missing malloc check]
        - imagemagick <unfixed> (bug #851485)
        NOTE: Fixed by: 
https://github.com/ImageMagick/ImageMagick/commit/97566cf2806c0a5a86e884c96831a0c3b1ec6c20
-       NOTE: CVE Request: 
http://www.openwall.com/lists/oss-security/2017/01/16/6
-CVE-2017-XXXX [wpg file off by one]
+       NOTE: http://www.openwall.com/lists/oss-security/2017/01/16/6
+CVE-2016-10145 [wpg file off by one]
        - imagemagick <unfixed> (bug #851483)
        NOTE: Fixed by: 
https://github.com/ImageMagick/ImageMagick/commit/d23beebe7b1179fb75db1e85fbca3100e49593d9
-       NOTE: CVE Request: 
http://www.openwall.com/lists/oss-security/2017/01/16/6
+       NOTE: http://www.openwall.com/lists/oss-security/2017/01/16/6
 CVE-2017-5487 [WordPress 4.7 - User Information Disclosure via REST API]
        - wordpress 4.7.1+dfsg-1 (bug #851310)
        NOTE: http://www.openwall.com/lists/oss-security/2017/01/14/1


_______________________________________________
Secure-testing-commits mailing list
[email protected]
http://lists.alioth.debian.org/cgi-bin/mailman/listinfo/secure-testing-commits

Reply via email to