[Git][security-tracker-team/security-tracker][master] mark CVE-2021-36222 as not-affected for Stretch

Thorsten Alteholz (@alteholz) alteholz at debian.org
Fri Jul 23 15:10:04 BST 2021



Thorsten Alteholz pushed to branch master at Debian Security Tracker / security-tracker


Commits:
6b838a45 by Thorsten Alteholz at 2021-07-23T16:08:25+02:00
mark CVE-2021-36222 as not-affected for Stretch

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -2540,6 +2540,7 @@ CVE-2021-36223
 	RESERVED
 CVE-2021-36222 (ec_verify in kdc/kdc_preauth_ec.c in the Key Distribution Center (KDC) ...)
 	- krb5 1.18.3-6 (bug #991365)
+	[stretch] - krb5 <not-affected> (Vulnerable code (k5memdup0()) introduced later)
 	NOTE: https://github.com/krb5/krb5/commit/fc98f520caefff2e5ee9a0026fdf5109944b3562
 CVE-2021-36221
 	RESERVED



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/6b838a458bb3cd9cc366a2b8ac9fb8a516d34e26

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/6b838a458bb3cd9cc366a2b8ac9fb8a516d34e26
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20210723/daab07a7/attachment.htm>


More information about the debian-security-tracker-commits mailing list