Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits: 5bdde76e by Salvatore Bonaccorso at 2023-09-05T14:15:01+02:00 Add four new gpac CVEs - - - - - 1 changed file: - data/CVE/list Changes: ===================================== data/CVE/list ===================================== @@ -1,11 +1,23 @@ CVE-2023-4758 (Buffer Over-read in GitHub repository gpac/gpac prior to 2.3-DEV.) - TODO: check + - gpac <unfixed> + [buster] - gpac <end-of-life> (EOL in buster LTS) + NOTE: https://github.com/gpac/gpac/commit/193633b1648582444fc99776cd741d7ba0125e86 + NOTE: https://huntr.dev/bounties/2f496261-1090-45ac-bc89-cc93c82090d6 CVE-2023-4756 (Stack-based Buffer Overflow in GitHub repository gpac/gpac prior to 2. ...) - TODO: check + - gpac <unfixed> + [buster] - gpac <end-of-life> (EOL in buster LTS) + NOTE: https://github.com/gpac/gpac/commit/6914d016e2b540bac2c471c4aea156ddef8e8e01 + NOTE: https://huntr.dev/bounties/2342da0e-f097-4ce7-bfdc-3ec0ba446e05 CVE-2023-4755 (Use After Free in GitHub repository gpac/gpac prior to 2.3-DEV.) - TODO: check + - gpac <unfixed> + [buster] - gpac <end-of-life> (EOL in buster LTS) + NOTE: https://github.com/gpac/gpac/commit/895ac12da168435eb8db3f96978ffa4c69d66c3a + NOTE: https://huntr.dev/bounties/463474b7-a4e8-42b6-8b30-e648a77ee6b3 CVE-2023-4754 (Out-of-bounds Write in GitHub repository gpac/gpac prior to 2.3-DEV.) - TODO: check + - gpac <unfixed> + [buster] - gpac <end-of-life> (EOL in buster LTS) + NOTE: https://github.com/gpac/gpac/commit/7e2e92feb1b30fac1d659f6620d743b5a188ffe0 + NOTE: https://huntr.dev/bounties/b7ed24ad-7d0b-40b7-8f4d-3c18a906620c CVE-2023-4752 (Use After Free in GitHub repository vim/vim prior to 9.0.1858.) TODO: check CVE-2023-4750 (Use After Free in GitHub repository vim/vim prior to 9.0.1857.) View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/5bdde76e23f6af1e13e057cf03383bb7251a630f -- View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/5bdde76e23f6af1e13e057cf03383bb7251a630f You're receiving this email because of your account on salsa.debian.org.
_______________________________________________ debian-security-tracker-commits mailing list [email protected] https://alioth-lists.debian.net/cgi-bin/mailman/listinfo/debian-security-tracker-commits
