Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / 
security-tracker


Commits:
c52f3fd3 by Salvatore Bonaccorso at 2024-10-21T22:06:21+02:00
Demote CVE-2024-4316{7,8}/unbound to unimportant

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -17297,18 +17297,20 @@ CVE-2024-21302 (Summary: Microsoft was notified that 
an elevation of privilege v
        NOT-FOR-US: Microsoft
 CVE-2024-43168 (A heap-buffer-overflow flaw was found in the cfg_mark_ports 
function w ...)
        {DLA-3903-1}
-       - unbound 1.20.0-1
+       - unbound 1.20.0-1 (unimportant)
        NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=2303462
        NOTE: https://github.com/NLnetLabs/unbound/issues/1039
        NOTE: https://github.com/NLnetLabs/unbound/pull/1040
        NOTE: Fixed by: 
https://github.com/NLnetLabs/unbound/commit/193401e7543a1e561dd634a3eaae932fa462a2b9
 (release-1.20.0rc1)
+       NOTE: Negligible security impact according to upstream
 CVE-2024-43167 (A NULL pointer dereference flaw was found in the 
ub_ctx_set_fwd functi ...)
        {DLA-3903-1}
-       - unbound 1.21.1-1 (bug #1078647)
+       - unbound 1.21.1-1 (bug #1078647; unimportant)
        NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=2303456
        NOTE: https://github.com/NLnetLabs/unbound/issues/1072
        NOTE: https://github.com/NLnetLabs/unbound/pull/1073
        NOTE: Fixed by: 
https://github.com/NLnetLabs/unbound/commit/8e43e2574c4e02f79c562a061581cdcefe136912
 (release-1.21.0rc1)
+       NOTE: Negligible security impact according to upstream
 CVE-2024-7585 (A vulnerability has been found in Tenda i22 1.0.0.3(4687) and 
classifi ...)
        NOT-FOR-US: Tenda
 CVE-2024-7584 (A vulnerability, which was classified as critical, was found in 
Tenda  ...)



View it on GitLab: 
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/c52f3fd35546f4d642c7f079d1ac68a636678f08

-- 
View it on GitLab: 
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/c52f3fd35546f4d642c7f079d1ac68a636678f08
You're receiving this email because of your account on salsa.debian.org.


_______________________________________________
debian-security-tracker-commits mailing list
[email protected]
https://alioth-lists.debian.net/cgi-bin/mailman/listinfo/debian-security-tracker-commits

Reply via email to