[Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso (@carnil)
carnil at debian.org
Mon Jan 3 08:10:20 GMT 2022
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits:
e7ffa5d0 by security tracker role at 2022-01-03T08:10:12+00:00
automatic update
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -1,3 +1,7 @@
+CVE-2022-0083
+ RESERVED
+CVE-2022-0082
+ RESERVED
CVE-2022-22293 (admin/limits.php in Dolibarr 7.0.2 allows HTML injection, as demonstra ...)
- dolibarr <removed>
CVE-2022-0081
@@ -61,8 +65,8 @@ CVE-2021-45960 (In Expat (aka libexpat) before 2.4.3, a left shift by 29 (or mor
[buster] - expat <no-dsa> (Minor issue; can be fixed via point release)
NOTE: https://github.com/libexpat/libexpat/issues/531
NOTE: https://github.com/libexpat/libexpat/pull/534
-CVE-2022-0079
- RESERVED
+CVE-2022-0079 (showdoc is vulnerable to Generation of Error Message Containing Sensit ...)
+ TODO: check
CVE-2022-0078
RESERVED
CVE-2021-45959 (** DISPUTED ** {fmt} 7.1.0 through 8.0.1 has a stack-based buffer over ...)
@@ -54231,8 +54235,8 @@ CVE-2021-25996
RESERVED
CVE-2021-25995
RESERVED
-CVE-2021-25994
- RESERVED
+CVE-2021-25994 (In Userfrosting, versions v0.3.1 to v4.6.2 are vulnerable to Host Head ...)
+ TODO: check
CVE-2021-25993 (In Requarks wiki.js, versions 2.0.0-beta.147 to 2.5.255 are affected b ...)
TODO: check
CVE-2021-25992
@@ -54257,8 +54261,8 @@ CVE-2021-25983 (In Factor (App Framework & Headless CMS) forum plugin, versi
NOT-FOR-US: Factor (App Framework & Headless CMS)
CVE-2021-25982 (In Factor (App Framework & Headless CMS) forum plugin, versions 1. ...)
NOT-FOR-US: Factor (App Framework & Headless CMS)
-CVE-2021-25981
- RESERVED
+CVE-2021-25981 (In Talkyard, regular versions v0.2021.20 through v0.2021.33 and dev ve ...)
+ TODO: check
CVE-2021-25980 (In Talkyard, versions v0.04.01 through v0.6.74-WIP-63220cb, v0.2020.22 ...)
NOT-FOR-US: Talkyard
CVE-2021-25979 (Apostrophe CMS versions between 2.63.0 to 3.3.1 affected by an insuffi ...)
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/e7ffa5d0726c1faf8cb8ff225003d8b5c91b9742
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/e7ffa5d0726c1faf8cb8ff225003d8b5c91b9742
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20220103/e831cea5/attachment-0001.htm>
More information about the debian-security-tracker-commits
mailing list