Author: jmm
Date: 2017-10-11 09:28:08 +0000 (Wed, 11 Oct 2017)
New Revision: 56602

Modified:
   data/CVE/list
Log:
new libjpeg issue


Modified: data/CVE/list
===================================================================
--- data/CVE/list       2017-10-11 09:26:19 UTC (rev 56601)
+++ data/CVE/list       2017-10-11 09:28:08 UTC (rev 56602)
@@ -70,7 +70,10 @@
 CVE-2017-15233
        RESERVED
 CVE-2017-15232 (libjpeg-turbo 1.5.2 has a NULL Pointer Dereference in 
jdpostct.c and ...)
-       TODO: check
+       - libjpeg-turbo <unfixed> (low)
+       NOTE: https://github.com/libjpeg-turbo/libjpeg-turbo/pull/182
+       NOTE: https://github.com/mozilla/mozjpeg/issues/268
+       TODO: check libjpeg6b, libjpeg8 and libjpeg9
 CVE-2017-15231
        RESERVED
 CVE-2017-15230


_______________________________________________
Secure-testing-commits mailing list
Secure-testing-commits@lists.alioth.debian.org
http://lists.alioth.debian.org/cgi-bin/mailman/listinfo/secure-testing-commits

Reply via email to