[Git][security-tracker-team/security-tracker][master] Expand list of commits with two more for CVE-2021-3711 and CVE-2021-3712
Salvatore Bonaccorso (@carnil)
carnil at debian.org
Tue Aug 24 15:50:05 BST 2021
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits:
70a5c2ea by Salvatore Bonaccorso at 2021-08-24T16:49:18+02:00
Expand list of commits with two more for CVE-2021-3711 and CVE-2021-3712
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -2596,12 +2596,14 @@ CVE-2021-3712 [Read buffer overruns processing ASN.1 strings]
NOTE: https://git.openssl.org/gitweb/?p=openssl.git;a=commitdiff;h=bb4d2ed4091408404e18b3326e3df67848ef63d0 (OpenSSL_1_1_1l)
NOTE: https://git.openssl.org/gitweb/?p=openssl.git;a=commitdiff;h=2d0e5d4a4a5d4332325b5e5cea492fad2be633e1 (OpenSSL_1_1_1l)
NOTE: https://git.openssl.org/gitweb/?p=openssl.git;a=commitdiff;h=94d23fcff9b2a7a8368dfe52214d5c2569882c11 (OpenSSL_1_1_1l)
+ NOTE: https://git.openssl.org/gitweb/?p=openssl.git;a=commitdiff;h=8c74c9d1ade0fbdab5b815ddb747351b8b839641 (OpenSSL_1_1_1l)
CVE-2021-3711 [SM2 Decryption Buffer Overflow]
RESERVED
- openssl <unfixed>
- openssl1.0 <not-affected> (Vulnerability does not affect 1.0.2 series)
NOTE: https://www.openssl.org/news/secadv/20210824.txt
NOTE: https://git.openssl.org/gitweb/?p=openssl.git;a=commitdiff;h=59f5e75f3bced8fc0e130d72a3f582cf7b480b46 (OpenSSL_1_1_1l)
+ NOTE: https://git.openssl.org/gitweb/?p=openssl.git;a=commitdiff;h=733fa41c3fc4bcac37f94aa917f7242420f8a5a6 (OpenSSL_1_1_1l)
NOTE: https://git.openssl.org/gitweb/?p=openssl.git;a=commitdiff;h=515ac8b5e544dd713a2b4cabfc54b722d122c218 (OpenSSL_1_1_1l)
CVE-2021-38858
RESERVED
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/70a5c2ea7a51477ea86f372c9ee07e02a3793841
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/70a5c2ea7a51477ea86f372c9ee07e02a3793841
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20210824/e21bc39d/attachment.htm>
More information about the debian-security-tracker-commits
mailing list