[Git][security-tracker-team/security-tracker][master] mark CVE-2021-36222 as not-affected for Stretch
Thorsten Alteholz (@alteholz)
alteholz at debian.org
Fri Jul 23 15:10:04 BST 2021
Thorsten Alteholz pushed to branch master at Debian Security Tracker / security-tracker
Commits:
6b838a45 by Thorsten Alteholz at 2021-07-23T16:08:25+02:00
mark CVE-2021-36222 as not-affected for Stretch
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -2540,6 +2540,7 @@ CVE-2021-36223
RESERVED
CVE-2021-36222 (ec_verify in kdc/kdc_preauth_ec.c in the Key Distribution Center (KDC) ...)
- krb5 1.18.3-6 (bug #991365)
+ [stretch] - krb5 <not-affected> (Vulnerable code (k5memdup0()) introduced later)
NOTE: https://github.com/krb5/krb5/commit/fc98f520caefff2e5ee9a0026fdf5109944b3562
CVE-2021-36221
RESERVED
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/6b838a458bb3cd9cc366a2b8ac9fb8a516d34e26
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/6b838a458bb3cd9cc366a2b8ac9fb8a516d34e26
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20210723/daab07a7/attachment.htm>
More information about the debian-security-tracker-commits
mailing list