Salvatore Bonaccorso pushed to branch master at Debian Security Tracker /
security-tracker
Commits:
ec0babdd by Salvatore Bonaccorso at 2024-08-21T09:25:55+02:00
Reference upstream tag for CVE-2024-30949
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -274,7 +274,7 @@ CVE-2024-31842 (An issue was discovered in Italtel Embrace
1.6.4. The web applic
NOT-FOR-US: Italtel Embrace
CVE-2024-30949 (An issue in newlib v.4.3.0 allows an attacker to execute
arbitrary cod ...)
- newlib 4.4.0.20231231-2 (unimportant)
- NOTE:
https://sourceware.org/git/?p=newlib-cygwin.git;a=commit;h=5f15d7c5817b07a6b18cbab17342c95cb7b42be4
(cygwin-3.5.0)
+ NOTE:
https://sourceware.org/git/?p=newlib-cygwin.git;a=commit;h=5f15d7c5817b07a6b18cbab17342c95cb7b42be4
(newlib-4.4.0)
NOTE: Only affects riscv, which is still WIP
CVE-2024-28829 (Least privilege violation and reliance on untrusted inputs in
the mk_i ...)
TODO: check
View it on GitLab:
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/ec0babdd758e0841d2a403cbf9b03f861419b2b5
--
View it on GitLab:
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/ec0babdd758e0841d2a403cbf9b03f861419b2b5
You're receiving this email because of your account on salsa.debian.org.
_______________________________________________
debian-security-tracker-commits mailing list
[email protected]
https://alioth-lists.debian.net/cgi-bin/mailman/listinfo/debian-security-tracker-commits