[Git][security-tracker-team/security-tracker][master] Process more Jsish NFUs

Neil Williams (@codehelp) codehelp at debian.org
Fri Jan 28 09:23:00 GMT 2022



Neil Williams pushed to branch master at Debian Security Tracker / security-tracker


Commits:
cbf8eaa1 by Neil Williams at 2022-01-28T09:22:21+00:00
Process more Jsish NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -951,53 +951,53 @@ CVE-2021-46509 (Cesanta MJS v2.20.0 was discovered to contain a stack overflow v
 CVE-2021-46508 (There is an Assertion `i < parts_cnt' failed at src/mjs_bcode.c in  ...)
 	TODO: check
 CVE-2021-46507 (Jsish v3.5.0 was discovered to contain a stack overflow via Jsi_LogMsg ...)
-	TODO: check
+	NOT-FOR-US: Jsish
 CVE-2021-46506 (There is an Assertion 'v->d.lval != v' failed at src/jsiValue.c in  ...)
-	TODO: check
+	NOT-FOR-US: Jsish
 CVE-2021-46505 (Jsish v3.5.0 was discovered to contain a stack overflow via /usr/lib/x ...)
-	TODO: check
+	NOT-FOR-US: Jsish
 CVE-2021-46504 (There is an Assertion 'vp != resPtr' failed at jsiEval.c in Jsish v3.5 ...)
-	TODO: check
+	NOT-FOR-US: Jsish
 CVE-2021-46503 (Jsish v3.5.0 was discovered to contain a heap-use-after-free via /usr/ ...)
-	TODO: check
+	NOT-FOR-US: Jsish
 CVE-2021-46502 (Jsish v3.5.0 was discovered to contain a heap-use-after-free via /usr/ ...)
-	TODO: check
+	NOT-FOR-US: Jsish
 CVE-2021-46501 (Jsish v3.5.0 was discovered to contain a heap-use-after-free via SortS ...)
-	TODO: check
+	NOT-FOR-US: Jsish
 CVE-2021-46500 (Jsish v3.5.0 was discovered to contain a heap-use-after-free via jsi_A ...)
-	TODO: check
+	NOT-FOR-US: Jsish
 CVE-2021-46499 (Jsish v3.5.0 was discovered to contain a heap-use-after-free via jsi_V ...)
-	TODO: check
+	NOT-FOR-US: Jsish
 CVE-2021-46498 (Jsish v3.5.0 was discovered to contain a heap-use-after-free via jsi_w ...)
-	TODO: check
+	NOT-FOR-US: Jsish
 CVE-2021-46497 (Jsish v3.5.0 was discovered to contain a heap-use-after-free via jsi_U ...)
-	TODO: check
+	NOT-FOR-US: Jsish
 CVE-2021-46496 (Jsish v3.5.0 was discovered to contain a heap-use-after-free via Jsi_O ...)
-	TODO: check
+	NOT-FOR-US: Jsish
 CVE-2021-46495 (Jsish v3.5.0 was discovered to contain a heap-use-after-free via Delet ...)
-	TODO: check
+	NOT-FOR-US: Jsish
 CVE-2021-46494 (Jsish v3.5.0 was discovered to contain a heap-use-after-free via jsi_V ...)
-	TODO: check
+	NOT-FOR-US: Jsish
 CVE-2021-46493
 	RESERVED
 CVE-2021-46492 (Jsish v3.5.0 was discovered to contain a SEGV vulnerability via Jsi_Fu ...)
-	TODO: check
+	NOT-FOR-US: Jsish
 CVE-2021-46491 (Jsish v3.5.0 was discovered to contain a SEGV vulnerability via Jsi_Co ...)
-	TODO: check
+	NOT-FOR-US: Jsish
 CVE-2021-46490 (Jsish v3.5.0 was discovered to contain a SEGV vulnerability via Number ...)
-	TODO: check
+	NOT-FOR-US: Jsish
 CVE-2021-46489 (Jsish v3.5.0 was discovered to contain a heap-use-after-free via Jsi_D ...)
-	TODO: check
+	NOT-FOR-US: Jsish
 CVE-2021-46488 (Jsish v3.5.0 was discovered to contain a SEGV vulnerability via jsi_Ar ...)
-	TODO: check
+	NOT-FOR-US: Jsish
 CVE-2021-46487 (Jsish v3.5.0 was discovered to contain a SEGV vulnerability via /lib/x ...)
-	TODO: check
+	NOT-FOR-US: Jsish
 CVE-2021-46486 (Jsish v3.5.0 was discovered to contain a SEGV vulnerability via jsi_Ar ...)
-	TODO: check
+	NOT-FOR-US: Jsish
 CVE-2021-46485 (Jsish v3.5.0 was discovered to contain a SEGV vulnerability via Jsi_Va ...)
-	TODO: check
+	NOT-FOR-US: Jsish
 CVE-2021-46484 (Jsish v3.5.0 was discovered to contain a heap-use-after-free via Jsi_I ...)
-	TODO: check
+	NOT-FOR-US: Jsish
 CVE-2021-46483 (Jsish v3.5.0 was discovered to contain a heap buffer overflow via Bool ...)
 	NOT-FOR-US: Jsish
 CVE-2021-46482 (Jsish v3.5.0 was discovered to contain a heap buffer overflow via Numb ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/cbf8eaa12ef0a36b150c8fb3f90b3857acba2b02

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/cbf8eaa12ef0a36b150c8fb3f90b3857acba2b02
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20220128/90fdfe06/attachment-0001.htm>


More information about the debian-security-tracker-commits mailing list