[Git][security-tracker-team/security-tracker][master] Add information about CVE-2022-22594 (webkit2gtk / wpewebkit)

Alberto Garcia (@berto) berto at debian.org
Mon Jan 31 22:43:45 GMT 2022



Alberto Garcia pushed to branch master at Debian Security Tracker / security-tracker


Commits:
0e807a58 by Alberto Garcia at 2022-01-31T23:43:07+01:00
Add information about CVE-2022-22594 (webkit2gtk / wpewebkit)

https://lists.webkit.org/pipermail/webkit-gtk/2022-January/003778.html

- - - - -


2 changed files:

- data/CVE/list
- data/DSA/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -5758,8 +5758,12 @@ CVE-2022-22596
 	RESERVED
 CVE-2022-22595
 	RESERVED
-CVE-2022-22594
-	RESERVED
+CVE-2022-22594 (A cross-origin issue in the IndexDB API was addressed with improved input validation.)
+	{DSA-5061-1 DSA-5060-1}
+	- webkit2gtk 2.34.4-1
+	[stretch] - webkit2gtk <ignored> (Not covered by security support in stretch)
+	- wpewebkit 2.34.4-1
+	NOTE: https://webkitgtk.org/security/WSA-2022-0001.html
 CVE-2022-22593
 	RESERVED
 CVE-2022-22592


=====================================
data/DSA/list
=====================================
@@ -17,10 +17,10 @@
 	[buster] - nss 2:3.42.1-1+deb10u5
 	[bullseye] - nss 2:3.61-1+deb11u2
 [25 Jan 2022] DSA-5061-1 wpewebkit - security update
-	{CVE-2021-30934 CVE-2021-30936 CVE-2021-30951 CVE-2021-30952 CVE-2021-30953 CVE-2021-30954 CVE-2021-30984}
+	{CVE-2022-22594 CVE-2021-30934 CVE-2021-30936 CVE-2021-30951 CVE-2021-30952 CVE-2021-30953 CVE-2021-30954 CVE-2021-30984}
 	[bullseye] - wpewebkit 2.34.4-1~deb11u1
 [25 Jan 2022] DSA-5060-1 webkit2gtk - security update
-	{CVE-2021-30934 CVE-2021-30936 CVE-2021-30951 CVE-2021-30952 CVE-2021-30953 CVE-2021-30954 CVE-2021-30984}
+	{CVE-2022-22594 CVE-2021-30934 CVE-2021-30936 CVE-2021-30951 CVE-2021-30952 CVE-2021-30953 CVE-2021-30954 CVE-2021-30984}
 	[buster] - webkit2gtk 2.34.4-1~deb10u1
 	[bullseye] - webkit2gtk 2.34.4-1~deb11u1
 [25 Jan 2022] DSA-5059-1 policykit-1 - security update



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/0e807a58390d20e384b5cac0b105c2343d456e66

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/0e807a58390d20e384b5cac0b105c2343d456e66
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20220131/7fa03d7b/attachment-0001.htm>


More information about the debian-security-tracker-commits mailing list