[Git][security-tracker-team/security-tracker][master] Mark two of the dcmtk issues as unfixed
Salvatore Bonaccorso (@carnil)
carnil at debian.org
Fri Aug 19 20:12:59 BST 2022
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits:
12f897de by Salvatore Bonaccorso at 2022-08-19T21:10:46+02:00
Mark two of the dcmtk issues as unfixed
The CVE reference is missleading as they state that the 3.6.7 release
will fix all three. But in fact only one got included in the 3.6.7
release and two other were fixed only shortly after the tagged release.
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -11747,13 +11747,13 @@ CVE-2022-2121 (OFFIS DCMTK's (All versions prior to 3.6.7) has a NULL pointer de
NOTE: https://support.dcmtk.org/redmine/issues/1021
NOTE: Fixed by: https://git.dcmtk.org/?p=dcmtk.git;a=commit;h=3e996a2749a9355c9b680fa464ecfd9ab9ff567f (DCMTK-3.6.7)
CVE-2022-2120 (OFFIS DCMTK's (All versions prior to 3.6.7) service class user (SCU) i ...)
- - dcmtk 3.6.7-1 (bug #1014044)
+ - dcmtk <unfixed> (bug #1014044)
[bullseye] - dcmtk <no-dsa> (Minor issue)
[buster] - dcmtk <no-dsa> (Minor issue)
NOTE: https://support.dcmtk.org/redmine/issues/1021
NOTE: Fixed by: https://git.dcmtk.org/?p=dcmtk.git;a=commit;h=f06a867513524664a1b03dfcf812d8b60fdd02cc
CVE-2022-2119 (OFFIS DCMTK's (All versions prior to 3.6.7) service class provider (SC ...)
- - dcmtk 3.6.7-1 (bug #1014044)
+ - dcmtk <unfixed> (bug #1014044)
[bullseye] - dcmtk <no-dsa> (Minor issue)
[buster] - dcmtk <no-dsa> (Minor issue)
NOTE: https://support.dcmtk.org/redmine/issues/1021
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/12f897de22aa3740295c39c49077e9018d69bba3
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/12f897de22aa3740295c39c49077e9018d69bba3
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20220819/5f451da7/attachment.htm>
More information about the debian-security-tracker-commits
mailing list