Author: carnil Date: 2017-01-24 06:30:33 +0000 (Tue, 24 Jan 2017) New Revision: 48320
Modified: data/CVE/list Log: CVE-2016-9601/jbig2dec fixed in unstable Modified: data/CVE/list =================================================================== --- data/CVE/list 2017-01-24 06:01:55 UTC (rev 48319) +++ data/CVE/list 2017-01-24 06:30:33 UTC (rev 48320) @@ -12742,7 +12742,7 @@ TODO: check, proposed patch is not yet complete CVE-2016-9601 [Heap-buffer overflow due to Integer overflow in jbig2_image_new function] RESERVED - - jbig2dec <unfixed> (bug #850497) + - jbig2dec 0.13-4 (bug #850497) NOTE: https://bugs.ghostscript.com/show_bug.cgi?id=697457 NOTE: Patch: http://git.ghostscript.com/?p=jbig2dec.git;a=commitdiff;h=e698d5c11d27212aa1098bc5b1673a3378563092 CVE-2016-9600 [Null Pointer Dereference due to missing check for UNKNOWN color space in JP2 encoder] _______________________________________________ Secure-testing-commits mailing list Secure-testing-commits@lists.alioth.debian.org http://lists.alioth.debian.org/cgi-bin/mailman/listinfo/secure-testing-commits