[Git][security-tracker-team/security-tracker][master] automatic update

Salvatore Bonaccorso (@carnil) carnil at debian.org
Tue Feb 22 20:10:30 GMT 2022



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
9f6c6116 by security tracker role at 2022-02-22T20:10:22+00:00
automatic update

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -1,3 +1,261 @@
+CVE-2022-25762
+	RESERVED
+CVE-2022-25757
+	RESERVED
+CVE-2022-25756
+	RESERVED
+CVE-2022-25755
+	RESERVED
+CVE-2022-25754
+	RESERVED
+CVE-2022-25753
+	RESERVED
+CVE-2022-25752
+	RESERVED
+CVE-2022-25751
+	RESERVED
+CVE-2022-25750
+	RESERVED
+CVE-2022-25749
+	RESERVED
+CVE-2022-25748
+	RESERVED
+CVE-2022-25747
+	RESERVED
+CVE-2022-25746
+	RESERVED
+CVE-2022-25745
+	RESERVED
+CVE-2022-25744
+	RESERVED
+CVE-2022-25743
+	RESERVED
+CVE-2022-25742
+	RESERVED
+CVE-2022-25741
+	RESERVED
+CVE-2022-25740
+	RESERVED
+CVE-2022-25739
+	RESERVED
+CVE-2022-25738
+	RESERVED
+CVE-2022-25737
+	RESERVED
+CVE-2022-25736
+	RESERVED
+CVE-2022-25735
+	RESERVED
+CVE-2022-25734
+	RESERVED
+CVE-2022-25733
+	RESERVED
+CVE-2022-25732
+	RESERVED
+CVE-2022-25731
+	RESERVED
+CVE-2022-25730
+	RESERVED
+CVE-2022-25729
+	RESERVED
+CVE-2022-25728
+	RESERVED
+CVE-2022-25727
+	RESERVED
+CVE-2022-25726
+	RESERVED
+CVE-2022-25725
+	RESERVED
+CVE-2022-25724
+	RESERVED
+CVE-2022-25723
+	RESERVED
+CVE-2022-25722
+	RESERVED
+CVE-2022-25721
+	RESERVED
+CVE-2022-25720
+	RESERVED
+CVE-2022-25719
+	RESERVED
+CVE-2022-25718
+	RESERVED
+CVE-2022-25717
+	RESERVED
+CVE-2022-25716
+	RESERVED
+CVE-2022-25715
+	RESERVED
+CVE-2022-25714
+	RESERVED
+CVE-2022-25713
+	RESERVED
+CVE-2022-25712
+	RESERVED
+CVE-2022-25711
+	RESERVED
+CVE-2022-25710
+	RESERVED
+CVE-2022-25709
+	RESERVED
+CVE-2022-25708
+	RESERVED
+CVE-2022-25707
+	RESERVED
+CVE-2022-25706
+	RESERVED
+CVE-2022-25705
+	RESERVED
+CVE-2022-25704
+	RESERVED
+CVE-2022-25703
+	RESERVED
+CVE-2022-25702
+	RESERVED
+CVE-2022-25701
+	RESERVED
+CVE-2022-25700
+	RESERVED
+CVE-2022-25699
+	RESERVED
+CVE-2022-25698
+	RESERVED
+CVE-2022-25697
+	RESERVED
+CVE-2022-25696
+	RESERVED
+CVE-2022-25695
+	RESERVED
+CVE-2022-25694
+	RESERVED
+CVE-2022-25693
+	RESERVED
+CVE-2022-25692
+	RESERVED
+CVE-2022-25691
+	RESERVED
+CVE-2022-25690
+	RESERVED
+CVE-2022-25689
+	RESERVED
+CVE-2022-25688
+	RESERVED
+CVE-2022-25687
+	RESERVED
+CVE-2022-25686
+	RESERVED
+CVE-2022-25685
+	RESERVED
+CVE-2022-25684
+	RESERVED
+CVE-2022-25683
+	RESERVED
+CVE-2022-25682
+	RESERVED
+CVE-2022-25681
+	RESERVED
+CVE-2022-25680
+	RESERVED
+CVE-2022-25679
+	RESERVED
+CVE-2022-25678
+	RESERVED
+CVE-2022-25677
+	RESERVED
+CVE-2022-25676
+	RESERVED
+CVE-2022-25675
+	RESERVED
+CVE-2022-25674
+	RESERVED
+CVE-2022-25673
+	RESERVED
+CVE-2022-25672
+	RESERVED
+CVE-2022-25671
+	RESERVED
+CVE-2022-25670
+	RESERVED
+CVE-2022-25669
+	RESERVED
+CVE-2022-25668
+	RESERVED
+CVE-2022-25667
+	RESERVED
+CVE-2022-25666
+	RESERVED
+CVE-2022-25665
+	RESERVED
+CVE-2022-25664
+	RESERVED
+CVE-2022-25663
+	RESERVED
+CVE-2022-25662
+	RESERVED
+CVE-2022-25661
+	RESERVED
+CVE-2022-25660
+	RESERVED
+CVE-2022-25659
+	RESERVED
+CVE-2022-25658
+	RESERVED
+CVE-2022-25657
+	RESERVED
+CVE-2022-25656
+	RESERVED
+CVE-2022-25655
+	RESERVED
+CVE-2022-25654
+	RESERVED
+CVE-2022-25653
+	RESERVED
+CVE-2022-25652
+	RESERVED
+CVE-2022-25651
+	RESERVED
+CVE-2022-25650
+	RESERVED
+CVE-2022-25172
+	RESERVED
+CVE-2022-25170
+	RESERVED
+CVE-2022-24910
+	RESERVED
+CVE-2022-23985
+	RESERVED
+CVE-2022-21809
+	RESERVED
+CVE-2022-21238
+	RESERVED
+CVE-2022-21209
+	RESERVED
+CVE-2022-0730
+	RESERVED
+CVE-2022-0729
+	RESERVED
+CVE-2022-0728
+	RESERVED
+CVE-2022-0727
+	RESERVED
+CVE-2022-0726
+	RESERVED
+CVE-2022-0725
+	RESERVED
+CVE-2022-0724
+	RESERVED
+CVE-2022-0723
+	RESERVED
+CVE-2022-0722
+	RESERVED
+CVE-2022-0721
+	RESERVED
+CVE-2022-0720
+	RESERVED
+CVE-2022-0719
+	RESERVED
+CVE-2022-0718
+	RESERVED
 CVE-2022-25643
 	RESERVED
 CVE-2022-25642
@@ -113,8 +371,8 @@ CVE-2022-25599 (Cross-Site Request Forgery (CSRF) vulnerability leading to event
 	NOT-FOR-US: WordPress plugin
 CVE-2022-25598
 	RESERVED
-CVE-2022-0712
-	RESERVED
+CVE-2022-0712 (NULL Pointer Dereference in GitHub repository radareorg/radare2 prior  ...)
+	TODO: check
 CVE-2022-0711
 	RESERVED
 CVE-2022-0710
@@ -600,7 +858,7 @@ CVE-2022-0698
 	RESERVED
 CVE-2022-0697
 	RESERVED
-CVE-2022-0696 (NULL Pointer Dereference in Conda vim prior to 8.2. ...)
+CVE-2022-0696 (NULL Pointer Dereference in GitHub repository vim/vim prior to 8.2.442 ...)
 	- vim <unfixed>
 	[bullseye] - vim <no-dsa> (Minor issue)
 	[buster] - vim <no-dsa> (Minor issue)
@@ -784,7 +1042,7 @@ CVE-2022-25312
 	RESERVED
 CVE-2022-21132
 	RESERVED
-CVE-2022-0676 (Heap-based Buffer Overflow in NPM radare2.js prior to 5.6.4. ...)
+CVE-2022-0676 (Heap-based Buffer Overflow in GitHub repository radareorg/radare2 prio ...)
 	TODO: check
 CVE-2022-0675
 	RESERVED
@@ -834,8 +1092,8 @@ CVE-2022-0667
 	RESERVED
 CVE-2022-0666 (CRLF Injection leads to Stack Trace Exposure due to lack of filtering  ...)
 	NOT-FOR-US: microweber
-CVE-2022-0665
-	RESERVED
+CVE-2022-0665 (Path Traversal in GitHub repository pimcore/pimcore prior to 10.3.2. ...)
+	TODO: check
 CVE-2022-0664 (Use of Hard-coded Cryptographic Key in Go github.com/gravitl/netmaker  ...)
 	NOT-FOR-US: Go github.com/gravitl/netmaker
 CVE-2022-0663
@@ -957,8 +1215,8 @@ CVE-2022-0650
 	RESERVED
 CVE-2022-0649
 	RESERVED
-CVE-2021-46699
-	RESERVED
+CVE-2021-46699 (A vulnerability has been identified in Simcenter Femap (All versions & ...)
+	TODO: check
 CVE-2022-25257
 	RESERVED
 CVE-2022-25256 (SAS Web Report Studio 4.4 allows XSS. /SASWebReportStudio/logonAndRend ...)
@@ -2705,8 +2963,8 @@ CVE-2022-24635
 	RESERVED
 CVE-2022-24634
 	RESERVED
-CVE-2022-24633
-	RESERVED
+CVE-2022-24633 (All versions of FileCloud prior to 21.3 are vulnerable to user enumera ...)
+	TODO: check
 CVE-2022-24632
 	RESERVED
 CVE-2022-24631
@@ -2773,8 +3031,8 @@ CVE-2022-24601
 	RESERVED
 CVE-2022-24600
 	RESERVED
-CVE-2022-24599
-	RESERVED
+CVE-2022-24599 (In autofile Audio File Library 0.3.6, there exists one memory leak vul ...)
+	TODO: check
 CVE-2022-24598
 	RESERVED
 CVE-2022-24597
@@ -2813,8 +3071,8 @@ CVE-2022-24584
 	RESERVED
 CVE-2022-24583
 	RESERVED
-CVE-2022-24582
-	RESERVED
+CVE-2022-24582 (Accounting Journal Management 1.0 is vulnerable to XSS-PHPSESSID-Hijac ...)
+	TODO: check
 CVE-2022-24581
 	RESERVED
 CVE-2022-24580
@@ -2847,8 +3105,8 @@ CVE-2022-24567
 	RESERVED
 CVE-2022-24566
 	RESERVED
-CVE-2022-24565
-	RESERVED
+CVE-2022-24565 (Checkmk <=2.0.0p19 Fixed in 2.0.0p20 and Checkmk <=1.6.0p27 Fixe ...)
+	TODO: check
 CVE-2022-24564 (Checkmk <=2.0.0p19 contains a Cross Site Scripting (XSS) vulnerabil ...)
 	TODO: check
 CVE-2022-24563
@@ -9416,8 +9674,8 @@ CVE-2022-0146
 	RESERVED
 CVE-2022-0145
 	RESERVED
-CVE-2021-46162
-	RESERVED
+CVE-2021-46162 (A vulnerability has been identified in Simcenter Femap (All versions & ...)
+	TODO: check
 CVE-2021-46161 (A vulnerability has been identified in Simcenter Femap V2020.2 (All ve ...)
 	NOT-FOR-US: Siemens
 CVE-2021-46160 (A vulnerability has been identified in Simcenter Femap V2020.2 (All ve ...)
@@ -17002,10 +17260,10 @@ CVE-2021-4032 (A vulnerability was found in the Linux kernel's KVM subsystem in
 	NOTE: https://git.kernel.org/linus/f7d8a19f9a056a05c5c509fa65af472a322abfee (5.15-rc7)
 CVE-2021-4031
 	RESERVED
-CVE-2021-4030
-	RESERVED
-CVE-2021-4029
-	RESERVED
+CVE-2021-4030 (A cross-site request forgery vulnerability in the HTTP daemon of the Z ...)
+	TODO: check
+CVE-2021-4029 (A command injection vulnerability in the CGI program of the Zyxel ARMO ...)
+	TODO: check
 CVE-2021-4028 [use-after-free in RDMA listen()]
 	RESERVED
 	- linux 5.14.12-1



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/9f6c611654b250ae4e1537b4a5cf04eb19561928

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/9f6c611654b250ae4e1537b4a5cf04eb19561928
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20220222/156f0e0d/attachment.htm>


More information about the debian-security-tracker-commits mailing list