[Git][security-tracker-team/security-tracker][master] Correct reference for CVE-2021-31618/apache2 fix in h2_stream.c

Salvatore Bonaccorso (@carnil) carnil at debian.org
Thu Jun 10 11:48:08 BST 2021



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
1d1ce6f0 by Salvatore Bonaccorso at 2021-06-10T12:47:36+02:00
Correct reference for CVE-2021-31618/apache2 fix in h2_stream.c

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -6772,7 +6772,7 @@ CVE-2021-31618 [httpd: NULL pointer dereference on specially crafted HTTP/2 requ
 	- apache2 <unfixed> (bug #989562)
 	NOTE: https://httpd.apache.org/security/vulnerabilities_24.html#CVE-2021-31618
 	NOTE: https://github.com/apache/httpd/commit/a4fba223668c554e06bc78d6e3a88f33d4238ae4
-	NOTE: https://github.com/icing/mod_h2/commit/1207f69bff3804c7920a57af7649d1eef8b645de#diff-fb0096c49677980d95821ee43f691777ce0645add49981d04c542b92980ea533 (mod_h2 commit)
+	NOTE: https://svn.apache.org/viewvc/httpd/httpd/branches/2.4.x/modules/http2/h2_stream.c?r1=1889759&r2=1889758&pathrev=1889759
 CVE-2021-31617
 	RESERVED
 CVE-2021-31616 (Insufficient length checks in the ShapeShift KeepKey hardware wallet f ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/1d1ce6f0736874c6c9962664885c9d02ba714a13

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/1d1ce6f0736874c6c9962664885c9d02ba714a13
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20210610/95ff920d/attachment.htm>


More information about the debian-security-tracker-commits mailing list