Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits: c12c6b3a by Salvatore Bonaccorso at 2023-11-25T22:01:29+01:00 Add two new perl issues - - - - - 1 changed file: - data/CVE/list Changes: ===================================== data/CVE/list ===================================== @@ -1,3 +1,13 @@ +CVE-2023-47039 + - perl <not-affected> (Windows specific issue) +CVE-2023-47038 [Write past buffer end via illegal user-defined Unicode property] + - perl <unfixed> (bug #1056746) + [bookworm] - perl <no-dsa> (Minor issue; can be fixed via point release) + [bullseye] - perl <no-dsa> (Minor issue; can be fixed via point release) + [buster] - perl <not-affected> (Vulnerable code introduced later) + NOTE: Fixed by: https://github.com/Perl/perl5/commit/12c313ce49b36160a7ca2e9b07ad5bd92ee4a010 (v5.34.2) + NOTE: Fixed by: https://github.com/Perl/perl5/commit/7047915eef37fccd93e7cd985c29fe6be54650b6 (v5.36.2) + NOTE: Fixed by: https://github.com/Perl/perl5/commit/92a9eb3d0d52ec7655c1beb29999a5a5219be664 (v5.38.1) CVE-2023-46671 - kibana <itp> (bug #700337) CVE-2023-6293 (Prototype Pollution in GitHub repository robinbuschmann/sequelize-type ...) View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/c12c6b3a6d933e32f9fba6d998895a7eb861bd87 -- View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/c12c6b3a6d933e32f9fba6d998895a7eb861bd87 You're receiving this email because of your account on salsa.debian.org.
_______________________________________________ debian-security-tracker-commits mailing list [email protected] https://alioth-lists.debian.net/cgi-bin/mailman/listinfo/debian-security-tracker-commits
