[Bug 206590] devel/gdcm - CVE-2015-8397

bugzilla-noreply at freebsd.org bugzilla-noreply at freebsd.org
Mon Jan 25 02:06:38 UTC 2016


https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=206590

            Bug ID: 206590
           Summary: devel/gdcm - CVE-2015-8397
           Product: Ports & Packages
           Version: Latest
          Hardware: Any
                OS: Any
            Status: New
          Severity: Affects Only Me
          Priority: ---
         Component: Individual Port(s)
          Assignee: freebsd-ports-bugs at FreeBSD.org
          Reporter: venture37 at geeklan.co.uk
                CC: ports-secteam at FreeBSD.org

"GDCM versions 2.6.0 and 2.6.1 (and possibly previous versions) are prone to an
out-of-bounds read vulnerability due to missing checks" May not apply to the
version currently in ports, however, there's Bug 203479 which brings the port
up to date.
http://census-labs.com/news/2016/01/11/gdcm-out-bounds-read-jpeglscodec-decodeextent/

-- 
You are receiving this mail because:
You are the assignee for the bug.


More information about the freebsd-ports-bugs mailing list