Author: carnil
Date: 2017-02-28 06:08:47 +0000 (Tue, 28 Feb 2017)
New Revision: 49284
Modified:
data/CVE/list
Log:
CVE-2017-6196 update, vulnerability introduced later
Modified: data/CVE/list
===================================================================
--- data/CVE/list 2017-02-28 06:02:52 UTC (rev 49283)
+++ data/CVE/list 2017-02-28 06:08:47 UTC (rev 49284)
@@ -432,7 +432,7 @@
NOTE: vector and seen under valgrind. It might be disputable if that is
the
NOTE: same vulnerability though.
CVE-2017-6196 (Multiple use-after-free vulnerabilities in the
gx_image_enum_begin ...)
- - ghostscript <unfixed> (bug #856142)
+ - ghostscript <not-affected> (Issue introduced later, cf. bug #856142)
NOTE: https://bugs.ghostscript.com/show_bug.cgi?id=697596
NOTE: Fixed by:
http://git.ghostscript.com/?p=ghostpdl.git;h=ecceafe3abba2714ef9b432035fe0739d9b1a283
NOTE: Possibly introduced only after
http://git.ghostscript.com/?p=ghostpdl.git;h=cffb5712bc10c2c2f46adf311fc74aaae74cb784
_______________________________________________
Secure-testing-commits mailing list
[email protected]
http://lists.alioth.debian.org/cgi-bin/mailman/listinfo/secure-testing-commits