Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits: ef01ca45 by Salvatore Bonaccorso at 2025-03-31T19:24:36+02:00 Update status for CVE-2024-48615/libarchive - - - - - 1 changed file: - data/CVE/list Changes: ===================================== data/CVE/list ===================================== @@ -451,8 +451,11 @@ CVE-2024-51624 (Improper Neutralization of Input During Web Page Generation ('Cr NOT-FOR-US: WordPress plugin or theme CVE-2024-48615 (Null Pointer Dereference vulnerability in libarchive 3.7.6 and earlier ...) - libarchive <unfixed> + [bookworm] - libarchive <not-affected> (Vulnerable code introduced later) + [bullseye] - libarchive <not-affected> (Vulnerable code introduced later) NOTE: https://github.com/libarchive/libarchive/issues/2559 NOTE: https://github.com/libarchive/libarchive/issues/2353 + NOTE: Introduced with: https://github.com/libarchive/libarchive/commit/2d8a5760c5ec553283a95a1aaca746f6eb472d0f (v3.7.5) NOTE: Fixed by: https://github.com/libarchive/libarchive/commit/565b5aea491671ae33df1ca63697c10d54c00165 CVE-2024-39311 (Publify is a self hosted Web publishing platform on Rails. Prior to ve ...) NOT-FOR-US: Publify View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/ef01ca453375e2bb68dcc81f9ecebf4e136303c3 -- View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/ef01ca453375e2bb68dcc81f9ecebf4e136303c3 You're receiving this email because of your account on salsa.debian.org.
_______________________________________________ debian-security-tracker-commits mailing list debian-security-tracker-commits@alioth-lists.debian.net https://alioth-lists.debian.net/cgi-bin/mailman/listinfo/debian-security-tracker-commits