diff options
author | Moritz Muehlenhoff <jmm@debian.org> | 2020-01-28 08:01:02 -0800 |
---|---|---|
committer | Moritz Muehlenhoff <jmm@debian.org> | 2020-01-28 08:01:02 -0800 |
commit | fc1fa267a78d689b03502272fb064a3b3713e4c7 (patch) | |
tree | 272b964b1eb52f8503a47878c27f130cf832187e | |
parent | 73bcf4ab39b978645cdf03ec512edf28a30dbf60 (diff) |
more exiv2 fixes
-rw-r--r-- | data/CVE/list.2018 | 12 |
1 files changed, 6 insertions, 6 deletions
diff --git a/data/CVE/list.2018 b/data/CVE/list.2018 index 80b0ddd5f6..f1efad7ad9 100644 --- a/data/CVE/list.2018 +++ b/data/CVE/list.2018 @@ -9426,9 +9426,9 @@ CVE-2018-17582 (Tcpreplay v4.3.0 beta1 contains a heap-based buffer over-read. T NOTE: https://github.com/appneta/tcpreplay/commit/68f67b1a3a4d319543692afb5bd5b191ec984287 CVE-2018-17581 (CiffDirectory::readDirectory() at crwimage_int.cpp in Exiv2 0.26 has e ...) {DLA-1691-1} - - exiv2 <unfixed> (low; bug #910060) - [buster] - exiv2 <no-dsa> (Minor issue) - [stretch] - exiv2 <no-dsa> (Minor issue) + - exiv2 0.27.2-6 (low; bug #910060) + [buster] - exiv2 <ignored> (Minor issue) + [stretch] - exiv2 <ignored> (Minor issue) NOTE: https://github.com/Exiv2/exiv2/issues/460 NOTE: Fixed in: https://github.com/Exiv2/exiv2/commit/b3d077dcaefb6747fff8204490f33eba5a144edb CVE-2018-17580 (A heap-based buffer over-read exists in the function fast_edit_packet( ...) @@ -12824,9 +12824,9 @@ CVE-2018-16337 (An issue was discovered in Cscms V4.1.8. There is a CSRF vulnera NOT-FOR-US: Cscms CVE-2018-16336 (Exiv2::Internal::PngChunk::parseTXTChunk in Exiv2 v0.26 allows remote ...) {DLA-1551-1} - - exiv2 <unfixed> (bug #916081) - [buster] - exiv2 <no-dsa> (Minor issue) - [stretch] - exiv2 <no-dsa> (Minor issue) + - exiv2 0.27.2-6 (bug #916081) + [buster] - exiv2 <ignored> (Minor issue) + [stretch] - exiv2 <ignored> (Minor issue) NOTE: https://github.com/Exiv2/exiv2/issues/400 NOTE: https://github.com/Exiv2/exiv2/commit/35b3e596edacd2437c2c5d3dd2b5c9502626163d CVE-2018-16335 (newoffsets handling in ChopUpSingleUncompressedStrip in tif_dirread.c ...) |