diff options
author | Moritz Muehlenhoff <jmm@debian.org> | 2020-01-28 08:01:02 -0800 |
---|---|---|
committer | Moritz Muehlenhoff <jmm@debian.org> | 2020-01-28 08:01:02 -0800 |
commit | 74a707c8c8a9498f9b80f7683b4bb1733271167f (patch) | |
tree | 951e0aa1fad08eb0d52920406bda20ebd5933436 | |
parent | 24dce4fda3374db1057581e5d0a0a8bf643297b2 (diff) |
more exiv2 fixes
-rw-r--r-- | data/CVE/2018.list | 12 |
1 files changed, 6 insertions, 6 deletions
diff --git a/data/CVE/2018.list b/data/CVE/2018.list index 80b0ddd5f6..f1efad7ad9 100644 --- a/data/CVE/2018.list +++ b/data/CVE/2018.list @@ -9426,9 +9426,9 @@ CVE-2018-17582 (Tcpreplay v4.3.0 beta1 contains a heap-based buffer over-read. T NOTE: https://github.com/appneta/tcpreplay/commit/68f67b1a3a4d319543692afb5bd5b191ec984287 CVE-2018-17581 (CiffDirectory::readDirectory() at crwimage_int.cpp in Exiv2 0.26 has e ...) {DLA-1691-1} - - exiv2 <unfixed> (low; bug #910060) - [buster] - exiv2 <no-dsa> (Minor issue) - [stretch] - exiv2 <no-dsa> (Minor issue) + - exiv2 0.27.2-6 (low; bug #910060) + [buster] - exiv2 <ignored> (Minor issue) + [stretch] - exiv2 <ignored> (Minor issue) NOTE: https://github.com/Exiv2/exiv2/issues/460 NOTE: Fixed in: https://github.com/Exiv2/exiv2/commit/b3d077dcaefb6747fff8204490f33eba5a144edb CVE-2018-17580 (A heap-based buffer over-read exists in the function fast_edit_packet( ...) @@ -12824,9 +12824,9 @@ CVE-2018-16337 (An issue was discovered in Cscms V4.1.8. There is a CSRF vulnera NOT-FOR-US: Cscms CVE-2018-16336 (Exiv2::Internal::PngChunk::parseTXTChunk in Exiv2 v0.26 allows remote ...) {DLA-1551-1} - - exiv2 <unfixed> (bug #916081) - [buster] - exiv2 <no-dsa> (Minor issue) - [stretch] - exiv2 <no-dsa> (Minor issue) + - exiv2 0.27.2-6 (bug #916081) + [buster] - exiv2 <ignored> (Minor issue) + [stretch] - exiv2 <ignored> (Minor issue) NOTE: https://github.com/Exiv2/exiv2/issues/400 NOTE: https://github.com/Exiv2/exiv2/commit/35b3e596edacd2437c2c5d3dd2b5c9502626163d CVE-2018-16335 (newoffsets handling in ChopUpSingleUncompressedStrip in tif_dirread.c ...) |