Re: "Leaky Vessels" CVEs affecting debian packages (incorrect NOT-FOR-US tag)

2024-02-07 Thread Salvatore Bonaccorso
Hi Will, On Wed, Feb 07, 2024 at 04:34:11PM +, Will Sewell wrote: > Hello, > > Your security tracker claims that the CVEs related to "Leaky Vessels" ( > https://snyk.io/blog/leaky-vessels-docker-runc-container-breakout-vulnerabilities/) > are NOT-FOR-US: > > -

External check

2024-02-07 Thread Security Tracker
CVE-2021-0773: RESERVED CVE-2021-0777: RESERVED CVE-2023-6110: missing from list CVE-2024-0058: missing from list CVE-2024-1300: missing from list CVE-2024-1312: missing from list -- The output might be a bit terse, but the above ids are known elsewhere, check the references in the tracker.

"Leaky Vessels" CVEs affecting debian packages (incorrect NOT-FOR-US tag)

2024-02-07 Thread Will Sewell
Hello, Your security tracker claims that the CVEs related to "Leaky Vessels" ( https://snyk.io/blog/leaky-vessels-docker-runc-container-breakout-vulnerabilities/) are NOT-FOR-US: - https://security-tracker.debian.org/tracker/CVE-2024-23651 -