[Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso (@carnil)
carnil at debian.org
Sun May 30 21:10:29 BST 2021
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits:
6162a574 by security tracker role at 2021-05-30T20:10:21+00:00
automatic update
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -1349,6 +1349,7 @@ CVE-2021-33479 [stack-based buffer overflow in measure_pitch() in pgm2asc.c]
NOTE: https://sourceforge.net/p/jocr/bugs/39/
NOTE: Crash in CLI tool, no security impact
CVE-2021-33477 (rxvt-unicode 9.22, rxvt 2.7.10, mrxvt 0.5.4, and Eterm 0.9.7 allow (po ...)
+ {DLA-2671-1}
- rxvt <removed>
- rxvt-unicode 9.22-11 (bug #988763)
[buster] - rxvt-unicode <no-dsa> (Minor issue)
@@ -25337,7 +25338,7 @@ CVE-2021-23018
RESERVED
CVE-2021-23017
RESERVED
- {DSA-4921-1}
+ {DSA-4921-1 DLA-2670-1}
- nginx <unfixed> (bug #989095)
NOTE: https://www.openwall.com/lists/oss-security/2021/05/25/5
NOTE: Patch: http://nginx.org/download/patch.2021.resolver.txt
@@ -36369,6 +36370,7 @@ CVE-2021-1873
CVE-2021-1872
RESERVED
CVE-2021-1871 (A logic issue was addressed with improved restrictions. This issue is ...)
+ {DSA-4923-1}
- webkit2gtk 2.32.0-2
[stretch] - webkit2gtk <ignored> (Not covered by security support in stretch)
- wpewebkit 2.32.0-2
@@ -36430,6 +36432,7 @@ CVE-2021-1846
CVE-2021-1845
RESERVED
CVE-2021-1844 (A memory corruption issue was addressed with improved validation. This ...)
+ {DSA-4923-1}
- webkit2gtk 2.32.0-2
[stretch] - webkit2gtk <ignored> (Not covered by security support in stretch)
- wpewebkit 2.32.0-2
@@ -36557,6 +36560,7 @@ CVE-2021-1789 (A type confusion issue was addressed with improved state handling
- wpewebkit 2.30.6-1
NOTE: https://webkitgtk.org/security/WSA-2021-0002.html
CVE-2021-1788 (A use after free issue was addressed with improved memory management. ...)
+ {DSA-4923-1}
- webkit2gtk 2.32.0-2
[stretch] - webkit2gtk <ignored> (Not covered by security support in stretch)
- wpewebkit 2.32.0-2
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/6162a574daf76f93ebf7e0bcbeaca26870a041ae
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/6162a574daf76f93ebf7e0bcbeaca26870a041ae
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20210530/e77e43b6/attachment.htm>
More information about the debian-security-tracker-commits
mailing list