[Git][security-tracker-team/security-tracker][master] Add CVE-2021-371{1,2}/openssl

Salvatore Bonaccorso (@carnil) carnil at debian.org
Tue Aug 24 15:04:37 BST 2021



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
fb9ce1ef by Salvatore Bonaccorso at 2021-08-24T16:04:00+02:00
Add CVE-2021-371{1,2}/openssl

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -2582,10 +2582,16 @@ CVE-2021-38860
 	RESERVED
 CVE-2021-38859
 	RESERVED
-CVE-2021-3712
+CVE-2021-3712 [Read buffer overruns processing ASN.1 strings]
 	RESERVED
-CVE-2021-3711
+	- openssl <unfixed>
+	- openssl1.0 <removed>
+	NOTE: https://www.openssl.org/news/secadv/20210824.txt
+CVE-2021-3711 [SM2 Decryption Buffer Overflow]
 	RESERVED
+	- openssl <unfixed>
+	- openssl1.0 <not-affected> (Vulnerability does not affect 1.0.2 series)
+	NOTE: https://www.openssl.org/news/secadv/20210824.txt
 CVE-2021-38858
 	RESERVED
 CVE-2021-38857



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/fb9ce1eff0e8e167c94b07627040d3d75d19a123

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/fb9ce1eff0e8e167c94b07627040d3d75d19a123
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20210824/d80fb7ae/attachment.htm>


More information about the debian-security-tracker-commits mailing list