[Git][security-tracker-team/security-tracker][master] Add CVE-2021-23177/libarchive

Salvatore Bonaccorso (@carnil) carnil at debian.org
Fri Dec 17 07:35:35 GMT 2021



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
956ac2bc by Salvatore Bonaccorso at 2021-12-17T08:35:05+01:00
Add CVE-2021-23177/libarchive

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -22,8 +22,11 @@ CVE-2021-45105
 	RESERVED
 CVE-2021-31566
 	RESERVED
-CVE-2021-23177
+CVE-2021-23177 [extracting a symlink with ACLs modifies ACLs of target]
 	RESERVED
+	- libarchive <unfixed>
+	NOTE: https://github.com/libarchive/libarchive/issues/1565
+	NOTE: https://github.com/libarchive/libarchive/commit/fba4f123cc456d2b2538f811bb831483bf336bad (v3.5.2)
 CVE-2022-21943
 	RESERVED
 CVE-2022-21942



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/956ac2bc9350ab620dafc2fe3a66ad811cc984fb

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/956ac2bc9350ab620dafc2fe3a66ad811cc984fb
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20211217/ed30b10c/attachment.htm>


More information about the debian-security-tracker-commits mailing list