[Git][security-tracker-team/security-tracker][master] Add Debian bug references for iotjs issues

Salvatore Bonaccorso (@carnil) carnil at debian.org
Thu Jun 17 15:11:39 BST 2021



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
63d0511d by Salvatore Bonaccorso at 2021-06-17T16:11:11+02:00
Add Debian bug references for iotjs issues

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -20594,25 +20594,25 @@ CVE-2021-26201 (The Login Panel of CASAP Automated Enrollment System 1.0 is vuln
 CVE-2021-26200 (The user area for Library System 1.0 is vulnerable to SQL injection wh ...)
 	NOT-FOR-US: Library System
 CVE-2021-26199 (An issue was discovered in JerryScript 2.4.0. There is a heap-use-afte ...)
-	- iotjs <unfixed>
+	- iotjs <unfixed> (bug #989991)
 	[buster] - iotjs <no-dsa> (Minor issue)
 	NOTE: https://github.com/jerryscript-project/jerryscript/issues/4056
 CVE-2021-26198 (An issue was discovered in JerryScript 2.4.0. There is a SEVG in ecma_ ...)
-	- iotjs <unfixed>
+	- iotjs <unfixed> (bug #989991)
 	[buster] - iotjs <no-dsa> (Minor issue)
 	NOTE: https://github.com/jerryscript-project/jerryscript/issues/4402
 CVE-2021-26197 (An issue was discovered in JerryScript 2.4.0. There is a SEGV in main_ ...)
-	- iotjs <unfixed>
+	- iotjs <unfixed> (bug #989991)
 	[buster] - iotjs <no-dsa> (Minor issue)
 	NOTE: https://github.com/jerryscript-project/jerryscript/issues/4403
 CVE-2021-26196
 	RESERVED
 CVE-2021-26195 (An issue was discovered in JerryScript 2.4.0. There is a heap-buffer-o ...)
-	- iotjs <unfixed>
+	- iotjs <unfixed> (bug #989991)
 	[buster] - iotjs <no-dsa> (Minor issue)
 	NOTE: https://github.com/jerryscript-project/jerryscript/issues/4442
 CVE-2021-26194 (An issue was discovered in JerryScript 2.4.0. There is a heap-use-afte ...)
-	- iotjs <unfixed>
+	- iotjs <unfixed> (bug #989991)
 	[buster] - iotjs <no-dsa> (Minor issue)
 	NOTE: https://github.com/jerryscript-project/jerryscript/issues/4445
 CVE-2021-26193
@@ -57740,19 +57740,19 @@ CVE-2020-23325
 CVE-2020-23324
 	RESERVED
 CVE-2020-23323 (There is a heap-buffer-overflow at re-parser.c in re_parse_char_escape ...)
-	- iotjs <unfixed>
+	- iotjs <unfixed> (bug #989991)
 	NOTE: https://github.com/jerryscript-project/jerryscript/issues/3871
 CVE-2020-23322 (There is an Assertion in 'context_p->token.type == LEXER_RIGHT_BRAC ...)
-	- iotjs <unfixed>
+	- iotjs <unfixed> (bug #989991)
 	NOTE: https://github.com/jerryscript-project/jerryscript/issues/3869
 CVE-2020-23321 (There is a heap-buffer-overflow at lit-strings.c:431 in lit_read_code_ ...)
-	- iotjs <unfixed>
+	- iotjs <unfixed> (bug #989991)
 	NOTE: https://github.com/jerryscript-project/jerryscript/issues/3870
 CVE-2020-23320 (There is an Assertion in 'context_p->next_scanner_info_p->type = ...)
-	- iotjs <unfixed>
+	- iotjs <unfixed> (bug #989991)
 	NOTE: https://github.com/jerryscript-project/jerryscript/issues/3835
 CVE-2020-23319 (There is an Assertion in '(flags >> CBC_STACK_ADJUST_SHIFT) > ...)
-	- iotjs <unfixed>
+	- iotjs <unfixed> (bug #989991)
 	NOTE: https://github.com/jerryscript-project/jerryscript/issues/3834
 CVE-2020-23318
 	RESERVED
@@ -57763,40 +57763,40 @@ CVE-2020-23316
 CVE-2020-23315
 	RESERVED
 CVE-2020-23314 (There is an Assertion 'block_found' failed at js-parser-statm.c:2003 p ...)
-	- iotjs <unfixed>
+	- iotjs <unfixed> (bug #989991)
 	NOTE: https://github.com/jerryscript-project/jerryscript/issues/3825
 CVE-2020-23313 (There is an Assertion 'scope_stack_p > context_p->scope_stack_p' ...)
-	- iotjs <unfixed>
+	- iotjs <unfixed> (bug #989991)
 	NOTE: https://github.com/jerryscript-project/jerryscript/issues/3823
 CVE-2020-23312 (There is an Assertion 'context.status_flags & PARSER_SCANNING_SUCC ...)
-	- iotjs <unfixed>
+	- iotjs <unfixed> (bug #989991)
 	NOTE: https://github.com/jerryscript-project/jerryscript/issues/3824
 CVE-2020-23311 (There is an Assertion 'context_p->token.type == LEXER_RIGHT_BRACE | ...)
-	- iotjs <unfixed>
+	- iotjs <unfixed> (bug #989991)
 	NOTE: https://github.com/jerryscript-project/jerryscript/issues/3822
 CVE-2020-23310 (There is an Assertion 'context_p->next_scanner_info_p->type == S ...)
-	- iotjs <unfixed>
+	- iotjs <unfixed> (bug #989991)
 	NOTE: https://github.com/jerryscript-project/jerryscript/issues/3821
 CVE-2020-23309 (There is an Assertion 'context_p->stack_depth == context_p->cont ...)
-	- iotjs <unfixed>
+	- iotjs <unfixed> (bug #989991)
 	NOTE: https://github.com/jerryscript-project/jerryscript/issues/3820
 CVE-2020-23308 (There is an Assertion 'context_p->stack_top_uint8 == LEXER_EXPRESSI ...)
-	- iotjs <unfixed>
+	- iotjs <unfixed> (bug #989991)
 	NOTE: https://github.com/jerryscript-project/jerryscript/issues/3819
 CVE-2020-23307
 	RESERVED
 CVE-2020-23306 (There is a stack-overflow at ecma-regexp-object.c:535 in ecma_regexp_m ...)
-	- iotjs <unfixed>
+	- iotjs <unfixed> (bug #989991)
 	NOTE: https://github.com/jerryscript-project/jerryscript/issues/3753
 CVE-2020-23305
 	RESERVED
 CVE-2020-23304
 	RESERVED
 CVE-2020-23303 (There is a heap-buffer-overflow at jmem-poolman.c:165 in jmem_pools_co ...)
-	- iotjs <unfixed>
+	- iotjs <unfixed> (bug #989991)
 	NOTE: https://github.com/jerryscript-project/jerryscript/issues/3749
 CVE-2020-23302 (There is a heap-use-after-free at ecma-helpers-string.c:772 in ecma_re ...)
-	- iotjs <unfixed>
+	- iotjs <unfixed> (bug #989991)
 	NOTE: https://github.com/jerryscript-project/jerryscript/issues/3748
 CVE-2020-23301
 	RESERVED



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/63d0511d1bf242c09c24489de1c609ba68748378

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/63d0511d1bf242c09c24489de1c609ba68748378
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20210617/556ba9a9/attachment.htm>


More information about the debian-security-tracker-commits mailing list