[Git][security-tracker-team/security-tracker][master] Add CVE-2022-45145 but retain todo item for now

Salvatore Bonaccorso (@carnil) carnil at debian.org
Mon Dec 12 07:56:33 GMT 2022



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
b889e982 by Salvatore Bonaccorso at 2022-12-12T08:56:01+01:00
Add CVE-2022-45145 but retain todo item for now

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -5335,7 +5335,10 @@ CVE-2022-3942 (A vulnerability was found in SourceCodester Sanitization Manageme
 CVE-2022-45146 (An issue was discovered in the FIPS Java API of Bouncy Castle BC-FJA b ...)
 	NOT-FOR-US: FIPS provider for Bouncycastle, not part of the Debian package for Bouncycastle
 CVE-2022-45145 (egg-compile.scm in CHICKEN 5.x before 5.3.1 allows arbitrary OS comman ...)
-	TODO: check
+	- chicken <unfixed>
+	NOTE: https://lists.gnu.org/archive/html/chicken-announce/2022-11/msg00000.html
+	NOTE: https://code.call-cc.org/cgi-bin/gitweb.cgi?p=chicken-core.git;a=commitdiff;h=a08f8f548d772ef410c672ba33a27108d8d434f3;hp=9c6fb001c25de4390f46ffd7c3c94237f4df92a9
+	TODO: check, might be Windows specific
 CVE-2022-45144
 	RESERVED
 CVE-2022-3941 (A vulnerability has been found in Activity Log Plugin and classified a ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/b889e982faac2e66aa1d4345c8f837e945a388d1

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/b889e982faac2e66aa1d4345c8f837e945a388d1
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20221212/b1a61778/attachment-0001.htm>


More information about the debian-security-tracker-commits mailing list