[Git][security-tracker-team/security-tracker][master] Update information for CVE-2021-0326

Salvatore Bonaccorso carnil at debian.org
Sat Feb 6 16:15:28 GMT 2021



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
1b458e71 by Salvatore Bonaccorso at 2021-02-06T17:14:14+01:00
Update information for CVE-2021-0326

Following https://source.android.com/security/bulletin/2021-02-01 and
https://bugzilla.redhat.com/show_bug.cgi?id=1925152 the CVE
CVE-2021-0326 is associated already with the wpa supplicant issuue.

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -275,11 +275,6 @@ CVE-2020-36241 (autoar-extractor.c in GNOME gnome-autoar through 0.2.4, as used
 	- gnome-autoar <unfixed>
 	NOTE: https://gitlab.gnome.org/GNOME/gnome-autoar/-/commit/adb067e645732fdbe7103516e506d09eb6a54429
 	NOTE: https://gitlab.gnome.org/GNOME/gnome-autoar/-/issues/7
-CVE-2021-XXXX [wpa_supplicant P2P group information processing vulnerability]
-	- wpa <unfixed> (bug #981971)
-	NOTE: https://www.openwall.com/lists/oss-security/2021/02/03/4
-	NOTE: https://w1.fi/security/2020-2/wpa_supplicant-p2p-group-info-processing-vulnerability.txt
-	NOTE: https://w1.fi/security/2020-2/0001-P2P-Fix-copying-of-secondary-device-types-for-P2P-gr.patch
 CVE-2021-26706
 	RESERVED
 CVE-2021-26705
@@ -24948,9 +24943,13 @@ CVE-2021-0328
 CVE-2021-0327
 	RESERVED
 	NOT-FOR-US: Android
-CVE-2021-0326
+CVE-2021-0326 [wpa_supplicant P2P group information processing vulnerability]
 	RESERVED
-	NOT-FOR-US: Android
+	- wpa <unfixed> (bug #981971)
+	NOTE: https://www.openwall.com/lists/oss-security/2021/02/03/4
+	NOTE: https://w1.fi/security/2020-2/wpa_supplicant-p2p-group-info-processing-vulnerability.txt
+	NOTE: https://w1.fi/security/2020-2/0001-P2P-Fix-copying-of-secondary-device-types-for-P2P-gr.patch
+	NOTE: https://w1.fi/cgit/hostap/commit/?id=947272febe24a8f0ea828b5b2f35f13c3821901e
 CVE-2021-0325
 	RESERVED
 	NOT-FOR-US: Android media framework



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/1b458e71372454dc91dd7fb0c7f557d5493b177b

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/1b458e71372454dc91dd7fb0c7f557d5493b177b
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20210206/54d79885/attachment.html>


More information about the debian-security-tracker-commits mailing list