[Git][security-tracker-team/security-tracker][master] Add CVE-2021-44227/mailman
    Salvatore Bonaccorso (@carnil) 
    carnil at debian.org
       
    Thu Dec  2 08:16:43 GMT 2021
    
    
  
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits:
d1773b73 by Salvatore Bonaccorso at 2021-12-02T09:16:16+01:00
Add CVE-2021-44227/mailman
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -747,7 +747,9 @@ CVE-2021-4024 [podman: podman machine spawns gvproxy with port binded to all IPs
 	NOTE: Introduced by: https://github.com/containers/podman/commit/7ef3981abe2412727840a2886489a08c03a05299 (v3.3.0-rc1)
 	NOTE: Fixed by: https://github.com/containers/podman/commit/295d87bb0b028e57dc2739791dee4820fe5fcc48
 CVE-2021-44227 (In GNU Mailman before 2.1.38, a list member or moderator can get a CSR ...)
-	TODO: check
+	- mailman <removed>
+	NOTE: https://bugs.launchpad.net/mailman/+bug/1952384
+	NOTE: Patch: https://launchpadlibrarian.net/570827498/patch.txt
 CVE-2021-44226
 	RESERVED
 CVE-2021-4023
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/d1773b7305e92ceba1dfcb0db3a50ce506043ea1
-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/d1773b7305e92ceba1dfcb0db3a50ce506043ea1
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20211202/c00305d1/attachment.htm>
    
    
More information about the debian-security-tracker-commits
mailing list