[Git][security-tracker-team/security-tracker][master] Reference commits for CVE-2022-25236/expat

Salvatore Bonaccorso (@carnil) carnil at debian.org
Fri Feb 18 19:44:49 GMT 2022



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
846409e5 by Salvatore Bonaccorso at 2022-02-18T20:44:17+01:00
Reference commits for CVE-2022-25236/expat

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -316,6 +316,9 @@ CVE-2022-25237
 CVE-2022-25236 (xmlparse.c in Expat (aka libexpat) before 2.4.5 allows attackers to in ...)
 	- expat <unfixed> (bug #1005895)
 	NOTE: https://github.com/libexpat/libexpat/pull/561
+	NOTE: https://github.com/libexpat/libexpat/commit/6881a4fc8596307ab9ff2e85e605afa2e413ab71
+	NOTE: https://github.com/libexpat/libexpat/commit/a2fe525e660badd64b6c557c2b1ec26ddc07f6e4
+	NOTE: https://github.com/libexpat/libexpat/commit/2de077423fb22750ebea599677d523b53cb93b1d
 CVE-2022-25235 (xmltok_impl.c in Expat (aka libexpat) before 2.4.5 lacks certain valid ...)
 	- expat <unfixed> (bug #1005894)
 	NOTE: https://github.com/libexpat/libexpat/pull/562



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/846409e582c043ce9a715c4b3dec9bc124c8e76c

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/846409e582c043ce9a715c4b3dec9bc124c8e76c
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20220218/072c605e/attachment.htm>


More information about the debian-security-tracker-commits mailing list