[Git][security-tracker-team/security-tracker][master] CVE-2022-25271/drupal7 assigned for SA-CORE-2022-033
Salvatore Bonaccorso (@carnil)
carnil at debian.org
Thu Feb 17 08:19:29 GMT 2022
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits:
7584a1fd by Salvatore Bonaccorso at 2022-02-17T09:18:54+01:00
CVE-2022-25271/drupal7 assigned for SA-CORE-2022-033
- - - - -
2 changed files:
- data/CVE/list
- data/DLA/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -54,8 +54,6 @@ CVE-2022-25273
RESERVED
CVE-2022-25272
RESERVED
-CVE-2022-25271 (Drupal core's form API has a vulnerability where certain contributed o ...)
- TODO: check
CVE-2022-25270 (The Quick Edit module does not properly check entity access in some ci ...)
TODO: check
CVE-2022-25269
@@ -186,9 +184,8 @@ CVE-2022-0625
RESERVED
CVE-2022-0624
RESERVED
-CVE-2022-XXXX [Improper input validation - SA-CORE-2022-003]
+CVE-2022-25271 [Improper input validation - SA-CORE-2022-003]
- drupal7 <removed>
- [stretch] - drupal7 7.52-2+deb9u18
NOTE: https://www.drupal.org/sa-core-2022-003
NOTE: https://git.drupalcode.org/project/drupal/-/commit/43c757167380643b5f73287a63a8739731a5b712
CVE-2022-25245
=====================================
data/DLA/list
=====================================
@@ -1,4 +1,5 @@
[16 Feb 2022] DLA-2925-1 drupal7 - security update
+ {CVE-2022-25271}
[stretch] - drupal7 7.52-2+deb9u18
[15 Feb 2022] DLA-2924-1 libxstream-java - security update
{CVE-2021-43859}
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/7584a1fd428b7a0ff71bb9e3f70e173a2d4edfb3
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/7584a1fd428b7a0ff71bb9e3f70e173a2d4edfb3
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20220217/73aafd80/attachment.htm>
More information about the debian-security-tracker-commits
mailing list