[Git][security-tracker-team/security-tracker][master] Add CVE-2022-30550/dovecot

Salvatore Bonaccorso (@carnil) carnil at debian.org
Wed Jul 6 15:47:25 BST 2022



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
9dbd0fb9 by Salvatore Bonaccorso at 2022-07-06T16:46:46+02:00
Add CVE-2022-30550/dovecot

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -12428,8 +12428,12 @@ CVE-2022-30552 (Das U-Boot 2022.01 has a Buffer Overflow. ...)
 	NOTE: Fixed by: https://source.denx.de/u-boot/u-boot/-/commit/b85d130ea0cac152c21ec38ac9417b31d41b5552 (v2022.07-rc4)
 CVE-2022-30551 (OPC UA Legacy Java Stack 2022-04-01 allows a remote attacker to cause  ...)
 	NOT-FOR-US: OPC UA Legacy Java Stack
-CVE-2022-30550
+CVE-2022-30550 [Privilege escalation possible in dovecot when imilar master and non-master passdbs are used]
 	RESERVED
+	- dovecot <unfixed>
+	NOTE: https://www.openwall.com/lists/oss-security/2022/07/06/9
+	NOTE: https://github.com/dovecot/core/commit/7bad6a24160e34bce8f10e73dbbf9e5fbbcd1904
+	NOTE: https://github.com/dovecot/core/commit/a1022072e2ce36f853873d910287f466165b184b
 CVE-2022-1677
 	RESERVED
 	NOT-FOR-US: OpenShift



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/9dbd0fb901d8f7f8233f8e7837ce77c74db9a1b4

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/9dbd0fb901d8f7f8233f8e7837ce77c74db9a1b4
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20220706/1bf94f7d/attachment.htm>


More information about the debian-security-tracker-commits mailing list