[Git][security-tracker-team/security-tracker][master] automatic update

Salvatore Bonaccorso (@carnil) carnil at debian.org
Wed Jun 30 09:10:29 BST 2021



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
5a43a3df by security tracker role at 2021-06-30T08:10:21+00:00
automatic update

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -1,3 +1,43 @@
+CVE-2021-35960
+	RESERVED
+CVE-2021-35959 (In Plone 5.0 through 5.2.4, Editors are vulnerable to XSS in the folde ...)
+	TODO: check
+CVE-2021-35958 (** DISPUTED ** TensorFlow through 2.5.0 allows attackers to overwrite  ...)
+	TODO: check
+CVE-2021-35957
+	RESERVED
+CVE-2021-35956
+	RESERVED
+CVE-2021-35955
+	RESERVED
+CVE-2021-35954
+	RESERVED
+CVE-2021-35953
+	RESERVED
+CVE-2021-35952
+	RESERVED
+CVE-2021-35951
+	RESERVED
+CVE-2021-35950
+	RESERVED
+CVE-2021-35949
+	RESERVED
+CVE-2021-35948
+	RESERVED
+CVE-2021-35947
+	RESERVED
+CVE-2021-35946
+	RESERVED
+CVE-2021-35945
+	RESERVED
+CVE-2021-35944
+	RESERVED
+CVE-2021-35943
+	RESERVED
+CVE-2021-35942
+	RESERVED
+CVE-2021-35941 (Western Digital WD My Book Live (2.x and later) and WD My Book Live Du ...)
+	TODO: check
 CVE-2021-3630
 	RESERVED
 CVE-2021-3629
@@ -17684,6 +17724,7 @@ CVE-2021-28423
 CVE-2021-28422
 	RESERVED
 CVE-2021-28421 (FluidSynth 2.1.7 contains a use after free vulnerability in sfloader/f ...)
+	{DLA-2697-1}
 	- fluidsynth 2.1.7-1.1 (bug #987168)
 	[buster] - fluidsynth 1.1.11-1+deb10u1
 	NOTE: https://github.com/FluidSynth/fluidsynth/issues/808
@@ -32017,8 +32058,8 @@ CVE-2021-22343
 	RESERVED
 CVE-2021-22342 (There is an information leak vulnerability in Huawei products. A modul ...)
 	NOT-FOR-US: Huawei
-CVE-2021-22341
-	RESERVED
+CVE-2021-22341 (There is a memory leak vulnerability in Huawei products. A resource ma ...)
+	TODO: check
 CVE-2021-22340 (There is a multiple threads race condition vulnerability in Huawei pro ...)
 	NOT-FOR-US: Huawei
 CVE-2021-22339 (There is a denial of service vulnerability in some versions of ManageO ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/5a43a3dfd0a2907350bd9c2c9e3e8f975ca0fcb7

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/5a43a3dfd0a2907350bd9c2c9e3e8f975ca0fcb7
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20210630/bb64604e/attachment.htm>


More information about the debian-security-tracker-commits mailing list