[Git][security-tracker-team/security-tracker][master] Update information for CVE-2020-26422/wireshark

Salvatore Bonaccorso carnil at debian.org
Mon Dec 28 13:22:41 GMT 2020



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
b15dff1b by Salvatore Bonaccorso at 2020-12-28T14:22:28+01:00
Update information for CVE-2020-26422/wireshark

As confirmed upstream[1] this never affected any Debian (nor upstream)
released version as the bug was introduced *and* fixed between 3.4.1 and
3.4.2.

 [1]: <https://gitlab.com/wireshark/wireshark/-/issues/17073#note_474593001>

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -16702,7 +16702,7 @@ CVE-2020-26424
 CVE-2020-26423
 	RESERVED
 CVE-2020-26422 (Buffer overflow in QUIC dissector in Wireshark 3.4.0 to 3.4.1 allows d ...)
-	- wireshark 3.4.2-1
+	- wireshark <not-affected> (Vulnerable code never present in a released version)
 	NOTE: https://gitlab.com/wireshark/wireshark/-/issues/17073
 	NOTE: https://www.wireshark.org/security/wnpa-sec-2020-20.html
 CVE-2020-26421 (Crash in USB HID protocol dissector and possibly other dissectors in W ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/b15dff1ba1727ded8d2d9f5d515578f36e0ef81f

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/b15dff1ba1727ded8d2d9f5d515578f36e0ef81f
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20201228/3eb82c32/attachment.html>


More information about the debian-security-tracker-commits mailing list