Salvatore Bonaccorso pushed to branch master at Debian Security Tracker /
security-tracker
Commits:
621ead39 by Salvatore Bonaccorso at 2021-07-21T17:42:56+02:00
Remove additional ')' brackets in annotation
- - - - -
d0fb6798 by Salvatore Bonaccorso at 2021-07-21T17:51:20+02:00
Add Debian bug reference for krb5 issue
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -729,8 +729,8 @@ CVE-2020-36429 (Variant_encodeJson in open62541 1.x before
1.0.4 has an out-of-b
NOT-FOR-US: open62541
CVE-2020-36428 (matio (aka MAT File I/O Library) 1.5.18 through 1.5.21 has a
heap-base ...)
- libmatio <unfixed>
- [buster] - libmatio <not-affected> (Vulnerable code not present,
introduced in 1.5.18))
- [stretch] - libmatio <not-affected> (Vulnerable code not present,
introduced in 1.5.18))
+ [buster] - libmatio <not-affected> (Vulnerable code not present,
introduced in 1.5.18)
+ [stretch] - libmatio <not-affected> (Vulnerable code not present,
introduced in 1.5.18)
CVE-2019-25051 (objstack in GNU Aspell 0.60.8 has a heap-based buffer overflow
in acom ...)
- aspell 0.60.8-3 (bug #991307)
NOTE:
https://github.com/gnuaspell/aspell/commit/0718b375425aad8e54e1150313b862e4c6fd324a
@@ -1993,7 +1993,7 @@ CVE-2021-36223
RESERVED
CVE-2021-36222 [sending a request containing a PA-ENCRYPTED-CHALLENGE padata
element without using FAST could result in null dereference in the KDC which
leads to DoS]
RESERVED
- - krb5 <unfixed>
+ - krb5 <unfixed> (bug #991365)
NOTE:
https://github.com/krb5/krb5/commit/fc98f520caefff2e5ee9a0026fdf5109944b3562
CVE-2021-36221
RESERVED
View it on GitLab:
https://salsa.debian.org/security-tracker-team/security-tracker/-/compare/68ece95c4f310d2995bcc291d17c4d5d94198ff7...d0fb67980eb9059b3725e03dcec459822333f29e
--
View it on GitLab:
https://salsa.debian.org/security-tracker-team/security-tracker/-/compare/68ece95c4f310d2995bcc291d17c4d5d94198ff7...d0fb67980eb9059b3725e03dcec459822333f29e
You're receiving this email because of your account on salsa.debian.org.
_______________________________________________
debian-security-tracker-commits mailing list
[email protected]
https://alioth-lists.debian.net/cgi-bin/mailman/listinfo/debian-security-tracker-commits