[Git][security-tracker-team/security-tracker][master] Add CVE-2022-0185/linux

Salvatore Bonaccorso (@carnil) carnil at debian.org
Tue Jan 18 18:41:11 GMT 2022



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
deba6526 by Salvatore Bonaccorso at 2022-01-18T19:40:37+01:00
Add CVE-2022-0185/linux

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -704,8 +704,13 @@ CVE-2022-0187
 	RESERVED
 CVE-2022-0186
 	RESERVED
-CVE-2022-0185
+CVE-2022-0185 [vfs: fs_context: fix up param length parsing in legacy_parse_param]
 	RESERVED
+	- linux <unfixed>
+	[buster] - linux <not-affected> (Vulnerable code introduced later)
+	[stretch] - linux <not-affected> (Vulnerable code introduced later)
+	NOTE: Fixed by: https://git.kernel.org/linus/722d94847de29310e8aa03fcbdb41fc92c521756
+	NOTE: https://www.openwall.com/lists/oss-security/2022/01/18/7
 CVE-2022-0184 (Insufficiently protected credentials vulnerability in 'TEPRA' PRO SR59 ...)
 	NOT-FOR-US: TEPRA
 CVE-2022-0183 (Missing encryption of sensitive data vulnerability in 'MIRUPASS' PW10  ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/deba6526364c94833bfdc716c4495294b41eaf8a

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/deba6526364c94833bfdc716c4495294b41eaf8a
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20220118/d8bba746/attachment.htm>


More information about the debian-security-tracker-commits mailing list