[Git][security-tracker-team/security-tracker][master] Mark two of the dcmtk issues as unfixed

Salvatore Bonaccorso (@carnil) carnil at debian.org
Fri Aug 19 20:12:59 BST 2022



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
12f897de by Salvatore Bonaccorso at 2022-08-19T21:10:46+02:00
Mark two of the dcmtk issues as unfixed

The CVE reference is missleading as they state that the 3.6.7 release
will fix all three. But in fact only one got included in the 3.6.7
release and two other were fixed only shortly after the tagged release.

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -11747,13 +11747,13 @@ CVE-2022-2121 (OFFIS DCMTK's (All versions prior to 3.6.7) has a NULL pointer de
 	NOTE: https://support.dcmtk.org/redmine/issues/1021
 	NOTE: Fixed by: https://git.dcmtk.org/?p=dcmtk.git;a=commit;h=3e996a2749a9355c9b680fa464ecfd9ab9ff567f (DCMTK-3.6.7)
 CVE-2022-2120 (OFFIS DCMTK's (All versions prior to 3.6.7) service class user (SCU) i ...)
-	- dcmtk 3.6.7-1 (bug #1014044)
+	- dcmtk <unfixed> (bug #1014044)
 	[bullseye] - dcmtk <no-dsa> (Minor issue)
 	[buster] - dcmtk <no-dsa> (Minor issue)
 	NOTE: https://support.dcmtk.org/redmine/issues/1021
 	NOTE: Fixed by: https://git.dcmtk.org/?p=dcmtk.git;a=commit;h=f06a867513524664a1b03dfcf812d8b60fdd02cc
 CVE-2022-2119 (OFFIS DCMTK's (All versions prior to 3.6.7) service class provider (SC ...)
-	- dcmtk 3.6.7-1 (bug #1014044)
+	- dcmtk <unfixed> (bug #1014044)
 	[bullseye] - dcmtk <no-dsa> (Minor issue)
 	[buster] - dcmtk <no-dsa> (Minor issue)
 	NOTE: https://support.dcmtk.org/redmine/issues/1021



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/12f897de22aa3740295c39c49077e9018d69bba3

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/12f897de22aa3740295c39c49077e9018d69bba3
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20220819/5f451da7/attachment.htm>


More information about the debian-security-tracker-commits mailing list