Moritz Muehlenhoff pushed to branch master at Debian Security Tracker /
security-tracker
Commits:
4e8edc2e by Moritz Muehlenhoff at 2021-01-11T09:04:59+01:00
record sid fixes for sane-backends
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -53157,7 +53157,7 @@ CVE-2020-12868
CVE-2020-12867 (A NULL pointer dereference in sanei_epson_net_read in SANE
Backends be ...)
{DLA-2332-1 DLA-2231-1}
[experimental] - sane-backends 1.0.30-1~experimental1
- - sane-backends <unfixed> (bug #961302)
+ - sane-backends 1.0.31-2 (bug #961302)
[buster] - sane-backends <no-dsa> (Minor issue)
NOTE: https://gitlab.com/sane-project/backends/-/issues/279
NOTE:
https://gitlab.com/sane-project/backends/-/issues/279#issue-1-ghsl-2020-075-null-pointer-dereference-in-sanei_epson_net_read
@@ -53165,7 +53165,7 @@ CVE-2020-12867 (A NULL pointer dereference in
sanei_epson_net_read in SANE Backe
NOTE:
https://gitlab.com/sane-project/backends/-/commit/fff83e7eacd0f27bb2d71c42488e0fd735c15ac3
(1.0.30)
CVE-2020-12866 (A NULL pointer dereference in SANE Backends before 1.0.30
allows a mal ...)
[experimental] - sane-backends 1.0.30-1~experimental1
- - sane-backends <unfixed> (bug #961302)
+ - sane-backends 1.0.31-2 (bug #961302)
[buster] - sane-backends <no-dsa> (Minor issue)
[stretch] - sane-backends <ignored> (already mitigated, auto-discovery
for unsupported network access added in 1.0.27)
[jessie] - sane-backends <not-affected> (epsonds backend was added in
1.0.25)
@@ -53177,7 +53177,7 @@ CVE-2020-12866 (A NULL pointer dereference in SANE
Backends before 1.0.30 allows
CVE-2020-12865 (A heap buffer overflow in SANE Backends before 1.0.30 may
allow a mali ...)
{DLA-2332-1}
[experimental] - sane-backends 1.0.30-1~experimental1
- - sane-backends <unfixed> (bug #961302)
+ - sane-backends 1.0.31-2 (bug #961302)
[buster] - sane-backends <no-dsa> (Minor issue)
[jessie] - sane-backends <not-affected> (epsonds backend was added in
1.0.25)
NOTE: https://gitlab.com/sane-project/backends/-/issues/279
@@ -53186,7 +53186,7 @@ CVE-2020-12865 (A heap buffer overflow in SANE Backends
before 1.0.30 may allow
NOTE:
https://gitlab.com/sane-project/backends/-/commit/b9b0173409df73e235da2aa0dae5edd21fb55967
(1.0.30)
CVE-2020-12864 (An out-of-bounds read in SANE Backends before 1.0.30 may allow
a malic ...)
[experimental] - sane-backends 1.0.30-1~experimental1
- - sane-backends <unfixed> (bug #961302)
+ - sane-backends 1.0.31-2 (bug #961302)
[buster] - sane-backends <no-dsa> (Minor issue)
[stretch] - sane-backends <ignored> (already mitigated, auto-discovery
for unsupported network access added in 1.0.27)
[jessie] - sane-backends <not-affected> (epsonds backend was added in
1.0.25)
@@ -53198,7 +53198,7 @@ CVE-2020-12864 (An out-of-bounds read in SANE Backends
before 1.0.30 may allow a
CVE-2020-12863 (An out-of-bounds read in SANE Backends before 1.0.30 may allow
a malic ...)
{DLA-2332-1}
[experimental] - sane-backends 1.0.30-1~experimental1
- - sane-backends <unfixed> (bug #961302)
+ - sane-backends 1.0.31-2 (bug #961302)
[buster] - sane-backends <no-dsa> (Minor issue)
[jessie] - sane-backends <not-affected> (epsonds backend was added in
1.0.25)
NOTE: https://gitlab.com/sane-project/backends/-/issues/279
@@ -53208,7 +53208,7 @@ CVE-2020-12863 (An out-of-bounds read in SANE Backends
before 1.0.30 may allow a
CVE-2020-12862 (An out-of-bounds read in SANE Backends before 1.0.30 may allow
a malic ...)
{DLA-2332-1}
[experimental] - sane-backends 1.0.30-1~experimental1
- - sane-backends <unfixed> (bug #961302)
+ - sane-backends 1.0.31-2 (bug #961302)
[buster] - sane-backends <no-dsa> (Minor issue)
[jessie] - sane-backends <not-affected> (epsonds backend was added in
1.0.25)
NOTE: https://gitlab.com/sane-project/backends/-/issues/279
View it on GitLab:
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/4e8edc2e058fa8830d01a6020c56e7cface6e98a
--
View it on GitLab:
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/4e8edc2e058fa8830d01a6020c56e7cface6e98a
You're receiving this email because of your account on salsa.debian.org.
_______________________________________________
debian-security-tracker-commits mailing list
[email protected]
https://alioth-lists.debian.net/cgi-bin/mailman/listinfo/debian-security-tracker-commits