[Git][security-tracker-team/security-tracker][master] Add references for upstream commits for CVE-2022-23852

Salvatore Bonaccorso (@carnil) carnil at debian.org
Sun Feb 6 16:26:57 GMT 2022



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
9f75f0b0 by Salvatore Bonaccorso at 2022-02-06T17:26:17+01:00
Add references for upstream commits for CVE-2022-23852

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -2251,6 +2251,8 @@ CVE-2022-23852 (Expat (aka libexpat) before 2.4.4 has a signed integer overflow
 	{DLA-2904-1}
 	- expat 2.4.3-2
 	NOTE: https://github.com/libexpat/libexpat/pull/550
+	NOTE: Fixed by: https://github.com/libexpat/libexpat/commit/847a645152f5ebc10ac63b74b604d0c1a79fae40 (R_2_4_4)
+	NOTE: Tests: https://github.com/libexpat/libexpat/commit/acf956f14bf79a5e6383a969aaffec98bfbc2e44
 CVE-2022-23851
 	RESERVED
 CVE-2022-0341



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/9f75f0b0fa8799d7ad1cdf7c7d330b1ff6099f34

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/9f75f0b0fa8799d7ad1cdf7c7d330b1ff6099f34
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20220206/0c62ff59/attachment.htm>


More information about the debian-security-tracker-commits mailing list