[Git][security-tracker-team/security-tracker][master] new dlt-daemon issue

Moritz Muehlenhoff jmm at debian.org
Wed Feb 10 16:54:40 GMT 2021



Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker


Commits:
ce38bf0c by Moritz Muehlenhoff at 2021-02-10T17:54:26+01:00
new dlt-daemon issue
NFUs
libmysofa no-dsa

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -311,13 +311,13 @@ CVE-2021-26955 (An issue was discovered in the xcb crate through 2021-02-04 for
 	- rust-xcb <unfixed>
 	NOTE: https://rustsec.org/advisories/RUSTSEC-2021-0019.html
 CVE-2021-26954 (An issue was discovered in the qwutils crate before 0.3.1 for Rust. Wh ...)
-	TODO: check
+	NOT-FOR-US: Rust crate qwutils
 CVE-2021-26953 (An issue was discovered in the postscript crate before 0.14.0 for Rust ...)
-	TODO: check
+	NOT-FOR-US: Rust crate postscript
 CVE-2021-26952 (An issue was discovered in the ms3d crate before 0.1.3 for Rust. It mi ...)
-	TODO: check
+	NOT-FOR-US: Rust crate ms3d
 CVE-2021-26951 (An issue was discovered in the calamine crate before 0.17.0 for Rust.  ...)
-	TODO: check
+	NOT-FOR-US: Rust crate calamine
 CVE-2021-26944
 	RESERVED
 CVE-2021-26943
@@ -347,7 +347,8 @@ CVE-2021-23217
 CVE-2021-23201
 	RESERVED
 CVE-2020-36244 (The daemon in GENIVI Diagnostic Log and Trace (DLT) before 2.18.6 has  ...)
-	TODO: check
+	- dlt-daemon <unfixed>
+	NOTE: https://github.com/GENIVI/dlt-daemon/issues/265
 CVE-2021-3404
 	RESERVED
 	- libytnef <unfixed>
@@ -12423,22 +12424,27 @@ CVE-2020-36153
 	RESERVED
 CVE-2020-36152 (Buffer overflow in readDataVar in hdf/dataobject.c in Symonics libmyso ...)
 	- libmysofa 1.2~dfsg0-1
+	[buster] - libmysofa <no-dsa> (Minor issue)
 	NOTE: https://github.com/hoene/libmysofa/issues/136
 	NOTE: https://github.com/hoene/libmysofa/pull/146
 CVE-2020-36151 (Incorrect handling of input data in mysofa_resampler_reset_mem functio ...)
 	- libmysofa 1.2~dfsg0-1
+	[buster] - libmysofa <no-dsa> (Minor issue)
 	NOTE: https://github.com/hoene/libmysofa/issues/134
 	NOTE: https://github.com/hoene/libmysofa/pull/146
 CVE-2020-36150 (Incorrect handling of input data in loudness function in the libmysofa ...)
 	- libmysofa 1.2~dfsg0-1
+	[buster] - libmysofa <no-dsa> (Minor issue)
 	NOTE: https://github.com/hoene/libmysofa/issues/135
 	NOTE: https://github.com/hoene/libmysofa/pull/146
 CVE-2020-36149 (Incorrect handling of input data in changeAttribute function in the li ...)
 	- libmysofa 1.2~dfsg0-1
+	[buster] - libmysofa <no-dsa> (Minor issue)
 	NOTE: https://github.com/hoene/libmysofa/issues/137
 	NOTE: https://github.com/hoene/libmysofa/pull/146
 CVE-2020-36148 (Incorrect handling of input data in verifyAttribute function in the li ...)
 	- libmysofa 1.2~dfsg0-1
+	[buster] - libmysofa <no-dsa> (Minor issue)
 	NOTE: https://github.com/hoene/libmysofa/issues/138
 	NOTE: https://github.com/hoene/libmysofa/pull/145
 CVE-2020-36147



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/ce38bf0c11b9811aa73afa6b548083a65aa44958

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/ce38bf0c11b9811aa73afa6b548083a65aa44958
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20210210/a335c0dd/attachment.html>


More information about the debian-security-tracker-commits mailing list