[Git][security-tracker-team/security-tracker][master] Add CVE-2022-3229{2,3}/connman

Salvatore Bonaccorso (@carnil) carnil at debian.org
Wed Aug 3 21:26:07 BST 2022



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
d58f8ac5 by Salvatore Bonaccorso at 2022-08-03T22:25:06+02:00
Add CVE-2022-3229{2,3}/connman

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -12700,9 +12700,14 @@ CVE-2022-32295 (On Ampere Altra and AltraMax devices before SRP 1.09, the Altra
 CVE-2022-32294 (Zimbra Collaboration Open Source 8.8.15 does not encrypt the initial-l ...)
 	NOT-FOR-US: Zimbra
 CVE-2022-32293 (In ConnMan through 1.41, a man-in-the-middle attack against a WISPR HT ...)
-	TODO: check
+	- connman <unfixed>
+	NOTE: https://lore.kernel.org/connman/20220801080043.4861-1-wagi@monom.org/
+	NOTE: https://lore.kernel.org/connman/20220801080043.4861-3-wagi@monom.org/
+	NOTE: https://bugzilla.suse.com/show_bug.cgi?id=1200190
 CVE-2022-32292 (In ConnMan through 1.41, remote attackers able to send HTTP requests t ...)
-	TODO: check
+	- connman <unfixed>
+	NOTE: https://lore.kernel.org/connman/20220801080043.4861-5-wagi@monom.org/
+	NOTE: https://bugzilla.suse.com/show_bug.cgi?id=1200189
 CVE-2022-32291 (In Real Player through 20.1.0.312, attackers can execute arbitrary cod ...)
 	NOT-FOR-US: Real Player
 CVE-2022-32290 (The client in Northern.tech Mender 3.2.0, 3.2.1, and 3.2.2 has Incorre ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/d58f8ac509dc8f8b3c2b8063e037de1fd3729c63

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/d58f8ac509dc8f8b3c2b8063e037de1fd3729c63
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20220803/02b5b56b/attachment.htm>


More information about the debian-security-tracker-commits mailing list