[Git][security-tracker-team/security-tracker][master] Reserve DLA-2850-1 for libpcap

Adrian Bunk (@bunk) bunk at debian.org
Sun Dec 26 19:30:36 GMT 2021



Adrian Bunk pushed to branch master at Debian Security Tracker / security-tracker


Commits:
695766a4 by Adrian Bunk at 2021-12-26T21:30:21+02:00
Reserve DLA-2850-1 for libpcap

- - - - -


3 changed files:

- data/CVE/list
- data/DLA/list
- data/dla-needed.txt


Changes:

=====================================
data/CVE/list
=====================================
@@ -161856,7 +161856,6 @@ CVE-2019-15165 (sf-pcapng.c in libpcap before 1.9.1 does not properly validate t
 	{DLA-1967-1}
 	- libpcap 1.9.1-1 (low; bug #941697)
 	[buster] - libpcap <ignored> (Minor issue)
-	[stretch] - libpcap <ignored> (Minor issue)
 	NOTE: https://github.com/the-tcpdump-group/libpcap/commit/87d6bef033062f969e70fa40c43dfd945d5a20ab
 	NOTE: https://github.com/the-tcpdump-group/libpcap/commit/a5a36d9e82dde7265e38fe1f87b7f11c461c29f6
 CVE-2019-15164 (rpcapd/daemon.c in libpcap before 1.9.1 allows SSRF because a URL may  ...)


=====================================
data/DLA/list
=====================================
@@ -1,3 +1,6 @@
+[26 Dec 2021] DLA-2850-1 libpcap - security update
+	{CVE-2019-15165}
+	[stretch] - libpcap 1.8.1-3+deb9u1
 [26 Dec 2021] DLA-2849-1 wireshark - security update
 	{CVE-2021-22207 CVE-2021-22235 CVE-2021-39921 CVE-2021-39922 CVE-2021-39923 CVE-2021-39924 CVE-2021-39925 CVE-2021-39928 CVE-2021-39929}
 	[stretch] - wireshark 2.6.20-0+deb9u2


=====================================
data/dla-needed.txt
=====================================
@@ -60,8 +60,6 @@ libgit2 (Utkarsh)
   NOTE: 20211129: readied up everything, using pygit and other wrappers
   NOTE: 20211129: around which the code changed. will upload in the next 2 days. (utkarsh)
 --
-libpcap (Adrian Bunk)
---
 linux (Ben Hutchings)
 --
 linux-4.19 (Ben Hutchings)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/695766a465c259e64a2b6e4e002c11091dcb991f

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/695766a465c259e64a2b6e4e002c11091dcb991f
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20211226/6b577db9/attachment.htm>


More information about the debian-security-tracker-commits mailing list