[Git][security-tracker-team/security-tracker][master] Add CVE-2021-37618/exiv2

Salvatore Bonaccorso (@carnil) carnil at debian.org
Tue Aug 10 06:25:34 BST 2021



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
b323e92c by Salvatore Bonaccorso at 2021-08-10T07:25:11+02:00
Add CVE-2021-37618/exiv2

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -1566,7 +1566,9 @@ CVE-2021-37620 (Exiv2 is a command-line utility and C++ library for reading, wri
 CVE-2021-37619 (Exiv2 is a command-line utility and C++ library for reading, writing,  ...)
 	TODO: check
 CVE-2021-37618 (Exiv2 is a command-line utility and C++ library for reading, writing,  ...)
-	TODO: check
+	- exiv2 <unfixed>
+	NOTE: https://github.com/Exiv2/exiv2/security/advisories/GHSA-583f-w9pm-99r2
+	NOTE: https://github.com/Exiv2/exiv2/pull/1759
 CVE-2021-37617
 	RESERVED
 CVE-2021-37616 [Null pointer dereference in Exiv2::Internal::resolveLens0x8ff]



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/b323e92cf38e71d1b2669c50a85c7bcb5fda5a12

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/b323e92cf38e71d1b2669c50a85c7bcb5fda5a12
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20210810/39ef65e8/attachment.htm>


More information about the debian-security-tracker-commits mailing list