[pkg-GD-devel] Bug#869263: libgd2: CVE-2017-7890: Buffer over-read into uninitialized memory

Salvatore Bonaccorso carnil at debian.org
Wed Aug 30 14:58:33 UTC 2017


Source: libgd2
Source-Version: 2.2.5-1

On Sat, Jul 22, 2017 at 09:11:15AM +0200, Salvatore Bonaccorso wrote:
> Source: libgd2
> Version: 2.2.4-2
> Severity: important
> Tags: security upstream
> Forwarded: https://github.com/libgd/libgd/issues/399
> 
> Hi,
> 
> the following vulnerability was published for libgd2.
> 
> CVE-2017-7890[0]:
> Buffer over-read into uninitialized memory

This one is fixed with the 2.2.5-1 upload to unstable.

Regards,
Salvatore



More information about the pkg-GD-devel mailing list