[Git][security-tracker-team/security-tracker][master] Add CVE-2021-4149{8,9}/python-pyo

Salvatore Bonaccorso (@carnil) carnil at debian.org
Thu Dec 23 14:07:37 GMT 2021



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
62a47bcc by Salvatore Bonaccorso at 2021-12-23T15:07:09+01:00
Add CVE-2021-4149{8,9}/python-pyo

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -14197,9 +14197,13 @@ CVE-2021-41500 (Incomplete string comparison vulnerability exits in cvxopt.org c
 	- cvxopt 1.2.7+dfsg-1
 	NOTE: https://github.com/cvxopt/cvxopt/issues/193
 CVE-2021-41499 (Buffer Overflow Vulnerability exists in ajaxsoundstudio.com n Pyo < ...)
-	TODO: check
+	- python-pyo 1.0.4-1
+	NOTE: https://github.com/belangeo/pyo/issues/222
+	NOTE: https://github.com/belangeo/pyo/commit/e7e6d2880469b523e4c41f0da2087a6a3eec4a45 (1.0.4)
 CVE-2021-41498 (Buffer overflow in ajaxsoundstudio.com Pyo &lt and 1.03 in the Ser ...)
-	TODO: check
+	- python-pyo 1.0.4-1
+	NOTE: https://github.com/belangeo/pyo/issues/221
+	NOTE: https://github.com/belangeo/pyo/commit/017702c73332a8560c8554a36250a6da587a2418 (1.0.4)
 CVE-2021-41497 (Null pointer reference in CMS_Conservative_increment_obj in RaRe-Techn ...)
 	TODO: check
 CVE-2021-41496 (Buffer overflow in the array_from_pyobj function of fortranobject.c in ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/62a47bcc9dc8644abba1c994e65620c51e5b03e3

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/62a47bcc9dc8644abba1c994e65620c51e5b03e3
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20211223/3f90809d/attachment.htm>


More information about the debian-security-tracker-commits mailing list