[Git][security-tracker-team/security-tracker][master] Add CVE-2021-20285/upx-ucl

Salvatore Bonaccorso carnil at debian.org
Fri Mar 12 05:37:13 GMT 2021



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
4749329c by Salvatore Bonaccorso at 2021-03-12T06:36:43+01:00
Add CVE-2021-20285/upx-ucl

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -19047,8 +19047,11 @@ CVE-2021-20286 [Assertion failure in nbd_unlocked_opt_go in lib/opt.c]
 	RESERVED
 	- libnbd <unfixed>
 	NOTE: Fixed by: https://gitlab.com/nbdkit/libnbd/-/commit/fb4440de9cc76e9c14bd3ddf3333e78621f40ad0 (v1.7.3)
-CVE-2021-20285
+CVE-2021-20285 [Illegal memory access in canPack function in p_lx_elf.cpp]
 	RESERVED
+	- upx-ucl <unfixed> (unimportant)
+	NOTE: https://github.com/upx/upx/issues/421
+	NOTE: https://github.com/upx/upx/commit/3781df9da23840e596d5e9e8493f22666802fe6c
 CVE-2021-20284
 	RESERVED
 CVE-2021-20283



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/4749329c43495d2ee10f29439d921b6e0ac0f0a1

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/4749329c43495d2ee10f29439d921b6e0ac0f0a1
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20210312/f17596e0/attachment.htm>


More information about the debian-security-tracker-commits mailing list