[Git][security-tracker-team/security-tracker][master] Add CVE-2021-44227/mailman

Salvatore Bonaccorso (@carnil) carnil at debian.org
Thu Dec 2 08:16:43 GMT 2021



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
d1773b73 by Salvatore Bonaccorso at 2021-12-02T09:16:16+01:00
Add CVE-2021-44227/mailman

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -747,7 +747,9 @@ CVE-2021-4024 [podman: podman machine spawns gvproxy with port binded to all IPs
 	NOTE: Introduced by: https://github.com/containers/podman/commit/7ef3981abe2412727840a2886489a08c03a05299 (v3.3.0-rc1)
 	NOTE: Fixed by: https://github.com/containers/podman/commit/295d87bb0b028e57dc2739791dee4820fe5fcc48
 CVE-2021-44227 (In GNU Mailman before 2.1.38, a list member or moderator can get a CSR ...)
-	TODO: check
+	- mailman <removed>
+	NOTE: https://bugs.launchpad.net/mailman/+bug/1952384
+	NOTE: Patch: https://launchpadlibrarian.net/570827498/patch.txt
 CVE-2021-44226
 	RESERVED
 CVE-2021-4023



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/d1773b7305e92ceba1dfcb0db3a50ce506043ea1

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/d1773b7305e92ceba1dfcb0db3a50ce506043ea1
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20211202/c00305d1/attachment.htm>


More information about the debian-security-tracker-commits mailing list