[Git][security-tracker-team/security-tracker][master] Add CVE-2022-2582/golang-github-aws-aws-sdk-go

Salvatore Bonaccorso (@carnil) carnil at debian.org
Fri Dec 30 16:16:08 GMT 2022



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
0f3a0e1f by Salvatore Bonaccorso at 2022-12-30T17:15:29+01:00
Add CVE-2022-2582/golang-github-aws-aws-sdk-go

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -35242,7 +35242,8 @@ CVE-2022-2584 (The dag-pb codec can panic when decoding invalid blocks. ...)
 CVE-2022-2583 (A race condition can cause incorrect HTTP request routing. ...)
 	TODO: check
 CVE-2022-2582 (The AWS S3 Crypto SDK sends an unencrypted hash of the plaintext along ...)
-	TODO: check
+	- golang-github-aws-aws-sdk-go 1.34.22-1
+	NOTE: https://github.com/aws/aws-sdk-go/commit/35fa6ddf45c061e0f08d3a3b5119f8f4da38f6d1 (v1.33.0)
 CVE-2021-4239 (The Noise protocol implementation suffers from weakened cryptographic  ...)
 	TODO: check
 CVE-2021-4238 (Randomly-generated alphanumeric strings contain significantly less ent ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/0f3a0e1f912643405465978ced48fd89ed4fba6d

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/0f3a0e1f912643405465978ced48fd89ed4fba6d
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20221230/8f46758d/attachment.htm>


More information about the debian-security-tracker-commits mailing list