Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / 
security-tracker


Commits:
a04a2886 by Moritz Muehlenhoff at 2024-05-06T17:29:28+02:00
shim fixed in sid

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -28726,38 +28726,38 @@ CVE-2023-52355 (An out-of-memory flaw was found in 
libtiff that could be trigger
        NOTE: 
https://gitlab.com/libtiff/libtiff/-/commit/16ab4a205cfc938c32686e8d697d048fabf97ed4
        NOTE: Issue fixed by providing a documentation update
 CVE-2023-40551 (A flaw was found in the MZ binary format in Shim. An 
out-of-bounds rea ...)
-       - shim <unfixed> (bug #1061519)
+       - shim 15.8-1 (bug #1061519)
        [bookworm] - shim <no-dsa> (Minor issue, fix with a point release)
        [bullseye] - shim <no-dsa> (Minor issue, fix with a point release)
        NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=2259918
        NOTE: 
https://github.com/rhboot/shim/commit/5a5147d1e19cf90ec280990c84061ac3f67ea1ab 
(15.8)
 CVE-2023-40550 (An out-of-bounds read flaw was found in Shim when it tried to 
validate ...)
-       - shim <unfixed> (bug #1061519)
+       - shim 15.8-1 (bug #1061519)
        [bookworm] - shim <no-dsa> (Minor issue, fix with a point release)
        [bullseye] - shim <no-dsa> (Minor issue, fix with a point release)
        NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=2259915
        NOTE: 
https://github.com/rhboot/shim/commit/93ce2552f3e9f71f888a672913bfc0eef255c56d 
(15.8)
        NOTE: Followup: 
https://github.com/rhboot/shim/commit/e7f5fdf53ee68025f3ef2688e2f27ccb0082db83 
(15.8)
 CVE-2023-40549 (An out-of-bounds read flaw was found in Shim due to the lack 
of proper ...)
-       - shim <unfixed> (bug #1061519)
+       - shim 15.8-1 (bug #1061519)
        [bookworm] - shim <no-dsa> (Minor issue, fix with a point release)
        [bullseye] - shim <no-dsa> (Minor issue, fix with a point release)
        NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=2241797
        NOTE: 
https://github.com/rhboot/shim/commit/afdc5039de0a4a3a40162a32daa070f94a883f09 
(15.8)
 CVE-2023-40548 (A buffer overflow was found in Shim in the 32-bit system. The 
overflow ...)
-       - shim <unfixed> (bug #1061519)
+       - shim 15.8-1 (bug #1061519)
        [bookworm] - shim <no-dsa> (Minor issue, fix with a point release)
        [bullseye] - shim <no-dsa> (Minor issue, fix with a point release)
        NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=2241782
        NOTE: 
https://github.com/rhboot/shim/commit/96dccc255b16e9465dbee50b3cef6b3db74d11c8 
(15.8)
 CVE-2023-40547 (A remote code execution vulnerability was found in Shim. The 
Shim boot ...)
-       - shim <unfixed> (bug #1061519)
+       - shim 15.8-1 (bug #1061519)
        [bookworm] - shim <no-dsa> (Minor issue, fix with a point release)
        [bullseye] - shim <no-dsa> (Minor issue, fix with a point release)
        NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=2234589
        NOTE: 
https://github.com/rhboot/shim/commit/0226b56513b2b8bd5fd281bce77c40c9bf07c66d 
(15.8)
 CVE-2023-40546 (A flaw was found in Shim when an error happened while creating 
a new E ...)
-       - shim <unfixed> (bug #1061519)
+       - shim 15.8-1 (bug #1061519)
        [bookworm] - shim <no-dsa> (Minor issue, fix with a point release)
        [bullseye] - shim <no-dsa> (Minor issue, fix with a point release)
        NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=2241796



View it on GitLab: 
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/a04a2886af8c8a1239f76a96b03c20b3e48783aa

-- 
View it on GitLab: 
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/a04a2886af8c8a1239f76a96b03c20b3e48783aa
You're receiving this email because of your account on salsa.debian.org.


_______________________________________________
debian-security-tracker-commits mailing list
debian-security-tracker-commits@alioth-lists.debian.net
https://alioth-lists.debian.net/cgi-bin/mailman/listinfo/debian-security-tracker-commits

Reply via email to