[Git][security-tracker-team/security-tracker][master] Reserve DLA-2850-1 for libpcap
Adrian Bunk (@bunk)
bunk at debian.org
Sun Dec 26 19:30:36 GMT 2021
Adrian Bunk pushed to branch master at Debian Security Tracker / security-tracker
Commits:
695766a4 by Adrian Bunk at 2021-12-26T21:30:21+02:00
Reserve DLA-2850-1 for libpcap
- - - - -
3 changed files:
- data/CVE/list
- data/DLA/list
- data/dla-needed.txt
Changes:
=====================================
data/CVE/list
=====================================
@@ -161856,7 +161856,6 @@ CVE-2019-15165 (sf-pcapng.c in libpcap before 1.9.1 does not properly validate t
{DLA-1967-1}
- libpcap 1.9.1-1 (low; bug #941697)
[buster] - libpcap <ignored> (Minor issue)
- [stretch] - libpcap <ignored> (Minor issue)
NOTE: https://github.com/the-tcpdump-group/libpcap/commit/87d6bef033062f969e70fa40c43dfd945d5a20ab
NOTE: https://github.com/the-tcpdump-group/libpcap/commit/a5a36d9e82dde7265e38fe1f87b7f11c461c29f6
CVE-2019-15164 (rpcapd/daemon.c in libpcap before 1.9.1 allows SSRF because a URL may ...)
=====================================
data/DLA/list
=====================================
@@ -1,3 +1,6 @@
+[26 Dec 2021] DLA-2850-1 libpcap - security update
+ {CVE-2019-15165}
+ [stretch] - libpcap 1.8.1-3+deb9u1
[26 Dec 2021] DLA-2849-1 wireshark - security update
{CVE-2021-22207 CVE-2021-22235 CVE-2021-39921 CVE-2021-39922 CVE-2021-39923 CVE-2021-39924 CVE-2021-39925 CVE-2021-39928 CVE-2021-39929}
[stretch] - wireshark 2.6.20-0+deb9u2
=====================================
data/dla-needed.txt
=====================================
@@ -60,8 +60,6 @@ libgit2 (Utkarsh)
NOTE: 20211129: readied up everything, using pygit and other wrappers
NOTE: 20211129: around which the code changed. will upload in the next 2 days. (utkarsh)
--
-libpcap (Adrian Bunk)
---
linux (Ben Hutchings)
--
linux-4.19 (Ben Hutchings)
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/695766a465c259e64a2b6e4e002c11091dcb991f
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/695766a465c259e64a2b6e4e002c11091dcb991f
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20211226/6b577db9/attachment.htm>
More information about the debian-security-tracker-commits
mailing list