[Git][security-tracker-team/security-tracker][master] automatic update

Salvatore Bonaccorso (@carnil) carnil at debian.org
Wed Jul 20 09:10:27 BST 2022



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
62fbf62c by security tracker role at 2022-07-20T08:10:18+00:00
automatic update

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -1,9 +1,61 @@
-CVE-2022-36305
+CVE-2022-36312
 	RESERVED
-CVE-2022-36304
+CVE-2022-36311
 	RESERVED
-CVE-2022-36303
+CVE-2022-36310
 	RESERVED
+CVE-2022-36309
+	RESERVED
+CVE-2022-36308
+	RESERVED
+CVE-2022-36307
+	RESERVED
+CVE-2022-36306
+	RESERVED
+CVE-2022-36294
+	RESERVED
+CVE-2022-36290
+	RESERVED
+CVE-2022-36289
+	RESERVED
+CVE-2022-35883
+	RESERVED
+CVE-2022-35274
+	RESERVED
+CVE-2022-35237
+	RESERVED
+CVE-2022-34860
+	RESERVED
+CVE-2022-34843
+	RESERVED
+CVE-2022-33949
+	RESERVED
+CVE-2022-32575
+	RESERVED
+CVE-2022-2485
+	RESERVED
+CVE-2022-2484
+	RESERVED
+CVE-2022-2483
+	RESERVED
+CVE-2022-2482
+	RESERVED
+CVE-2022-2481
+	RESERVED
+CVE-2022-2480
+	RESERVED
+CVE-2022-2479
+	RESERVED
+CVE-2022-2478
+	RESERVED
+CVE-2022-2477
+	RESERVED
+CVE-2022-36305 (Vesta v1.0.0-5 was discovered to contain a cross-site scripting (XSS)  ...)
+	TODO: check
+CVE-2022-36304 (Vesta v1.0.0-5 was discovered to contain a cross-site scripting (XSS)  ...)
+	TODO: check
+CVE-2022-36303 (Vesta v1.0.0-5 was discovered to contain a cross-site scripting (XSS)  ...)
+	TODO: check
 CVE-2022-36302
 	RESERVED
 CVE-2022-36301
@@ -12,8 +64,8 @@ CVE-2022-36300
 	RESERVED
 CVE-2022-30706
 	RESERVED
-CVE-2022-2476
-	RESERVED
+CVE-2022-2476 (A null pointer dereference bug was found in wavpack-5.4.0 The results  ...)
+	TODO: check
 CVE-2022-2475
 	RESERVED
 CVE-2022-2474
@@ -4302,20 +4354,20 @@ CVE-2022-34542
 	RESERVED
 CVE-2022-34541
 	RESERVED
-CVE-2022-34540
-	RESERVED
-CVE-2022-34539
-	RESERVED
-CVE-2022-34538
-	RESERVED
-CVE-2022-34537
-	RESERVED
-CVE-2022-34536
-	RESERVED
-CVE-2022-34535
-	RESERVED
-CVE-2022-34534
-	RESERVED
+CVE-2022-34540 (Digital Watchdog DW MEGApix IP cameras A7.2.2_20211029 was discovered  ...)
+	TODO: check
+CVE-2022-34539 (Digital Watchdog DW MEGApix IP cameras A7.2.2_20211029 was discovered  ...)
+	TODO: check
+CVE-2022-34538 (Digital Watchdog DW MEGApix IP cameras A7.2.2_20211029 was discovered  ...)
+	TODO: check
+CVE-2022-34537 (Digital Watchdog DW MEGApix IP cameras A7.2.2_20211029 was discovered  ...)
+	TODO: check
+CVE-2022-34536 (Digital Watchdog DW MEGApix IP cameras A7.2.2_20211029 allows attacker ...)
+	TODO: check
+CVE-2022-34535 (Digital Watchdog DW MEGApix IP cameras A7.2.2_20211029 allows unauthen ...)
+	TODO: check
+CVE-2022-34534 (Digital Watchdog DW Spectrum Server 4.2.0.32842 allows attackers to ac ...)
+	TODO: check
 CVE-2022-34533
 	RESERVED
 CVE-2022-34532
@@ -5099,8 +5151,8 @@ CVE-2022-34268
 	RESERVED
 CVE-2022-34267
 	RESERVED
-CVE-2022-34266
-	RESERVED
+CVE-2022-34266 (The libtiff-4.0.3-35.amzn2.0.1 package for LibTIFF on Amazon Linux 2 a ...)
+	TODO: check
 CVE-2022-34265 (An issue was discovered in Django 3.2 before 3.2.14 and 4.0 before 4.0 ...)
 	- python-django 2:4.0.6-1 (bug #1014541)
 	NOTE: https://www.openwall.com/lists/oss-security/2022/07/04/2
@@ -5695,8 +5747,8 @@ CVE-2022-34027 (Nginx NJS v0.7.4 was discovered to contain a segmentation violat
 	NOT-FOR-US: njs
 CVE-2022-34026
 	RESERVED
-CVE-2022-34025
-	RESERVED
+CVE-2022-34025 (Vesta v1.0.0-5 was discovered to contain a cross-site scripting (XSS)  ...)
+	TODO: check
 CVE-2022-34024 (Barangay Management System v1.0 was discovered to contain an arbitrary ...)
 	NOT-FOR-US: Barangay Management System
 CVE-2022-34023 (Barangay Management System v1.0 was discovered to contain a SQL inject ...)
@@ -6006,8 +6058,8 @@ CVE-2022-26084
 	RESERVED
 CVE-2022-2123 (The WP Opt-in WordPress plugin through 1.4.1 is vulnerable to CSRF whi ...)
 	NOT-FOR-US: WordPress plugin
-CVE-2022-2122
-	RESERVED
+CVE-2022-2122 (DOS / potential heap overwrite in qtdemux using zlib decompression. In ...)
+	TODO: check
 CVE-2022-2121 (OFFIS DCMTK's (All versions prior to 3.6.7) has a NULL pointer derefer ...)
 	- dcmtk <unfixed> (bug #1014044)
 	[bullseye] - dcmtk <no-dsa> (Minor issue)
@@ -8316,16 +8368,16 @@ CVE-2022-32964
 	RESERVED
 CVE-2022-32963
 	RESERVED
-CVE-2022-32962
-	RESERVED
-CVE-2022-32961
-	RESERVED
-CVE-2022-32960
-	RESERVED
-CVE-2022-32959
-	RESERVED
-CVE-2022-32958
-	RESERVED
+CVE-2022-32962 (HiCOS’ client-side citizen certificate component has a double fr ...)
+	TODO: check
+CVE-2022-32961 (HICOS’ client-side citizen digital certificate component has a s ...)
+	TODO: check
+CVE-2022-32960 (HiCOS’ client-side citizen digital certificate component has a s ...)
+	TODO: check
+CVE-2022-32959 (HiCOS’ client-side citizen digital certificate component has a s ...)
+	TODO: check
+CVE-2022-32958 (A remote attacker with general user privilege can send a message to Te ...)
+	TODO: check
 CVE-2022-32588
 	RESERVED
 CVE-2022-32281
@@ -9507,12 +9559,12 @@ CVE-2022-32460
 	RESERVED
 CVE-2022-32459
 	RESERVED
-CVE-2022-32458
-	RESERVED
-CVE-2022-32457
-	RESERVED
-CVE-2022-32456
-	RESERVED
+CVE-2022-32458 (Digiwin BPM has a XML External Entity Injection (XXE) vulnerability du ...)
+	TODO: check
+CVE-2022-32457 (Digiwin BPM has inadequate filtering for URL parameter. An unauthentic ...)
+	TODO: check
+CVE-2022-32456 (Digiwin BPM’s function has insufficient validation for user inpu ...)
+	TODO: check
 CVE-2022-30707 (Violation of secure design principles exists in the communication of C ...)
 	NOT-FOR-US: CAMS for HIS
 CVE-2022-30532 (In affected versions of Octopus Deploy, there is no logging of changes ...)
@@ -11423,18 +11475,18 @@ CVE-2022-31765
 	RESERVED
 CVE-2022-31764
 	RESERVED
-CVE-2022-1925
-	RESERVED
-CVE-2022-1924
-	RESERVED
-CVE-2022-1923
-	RESERVED
-CVE-2022-1922
-	RESERVED
-CVE-2022-1921
-	RESERVED
-CVE-2022-1920
-	RESERVED
+CVE-2022-1925 (DOS / potential heap overwrite in mkv demuxing using HEADERSTRIP decom ...)
+	TODO: check
+CVE-2022-1924 (DOS / potential heap overwrite in mkv demuxing using lzo decompression ...)
+	TODO: check
+CVE-2022-1923 (DOS / potential heap overwrite in mkv demuxing using bzip decompressio ...)
+	TODO: check
+CVE-2022-1922 (DOS / potential heap overwrite in mkv demuxing using zlib decompressio ...)
+	TODO: check
+CVE-2022-1921 (Integer overflow in avidemux element in gst_avi_demux_invert function  ...)
+	TODO: check
+CVE-2022-1920 (Integer overflow in matroskademux element in gst_matroska_demux_add_wv ...)
+	TODO: check
 CVE-2022-1919
 	RESERVED
 	- firefox 101.0-1
@@ -13241,8 +13293,8 @@ CVE-2022-31152
 	RESERVED
 CVE-2022-31151
 	RESERVED
-CVE-2022-31150
-	RESERVED
+CVE-2022-31150 (undici is an HTTP/1.1 client, written from scratch for Node.js. It is  ...)
+	TODO: check
 CVE-2022-31149
 	RESERVED
 CVE-2022-31148
@@ -13253,8 +13305,7 @@ CVE-2022-31146
 	RESERVED
 CVE-2022-31145 (FlyteAdmin is the control plane for Flyte responsible for managing ent ...)
 	TODO: check
-CVE-2022-31144
-	RESERVED
+CVE-2022-31144 (Redis is an in-memory database that persists on disk. A specially craf ...)
 	- redis 5:7.0.4-1
 	[bullseye] - redis <not-affected> (Only affects 7.x)
 	[buster] - redis <not-affected> (Only affects 7.x)
@@ -49425,173 +49476,168 @@ CVE-2022-21588
 	RESERVED
 CVE-2022-21587
 	RESERVED
-CVE-2022-21586
-	RESERVED
-CVE-2022-21585
-	RESERVED
-CVE-2022-21584
-	RESERVED
-CVE-2022-21583
-	RESERVED
-CVE-2022-21582
-	RESERVED
-CVE-2022-21581
-	RESERVED
-CVE-2022-21580
-	RESERVED
-CVE-2022-21579
-	RESERVED
-CVE-2022-21578
-	RESERVED
-CVE-2022-21577
-	RESERVED
-CVE-2022-21576
-	RESERVED
-CVE-2022-21575
-	RESERVED
-CVE-2022-21574
-	RESERVED
-CVE-2022-21573
-	RESERVED
-CVE-2022-21572
-	RESERVED
-CVE-2022-21571
-	RESERVED
+CVE-2022-21586 (Vulnerability in the Oracle Banking Trade Finance product of Oracle Fi ...)
+	TODO: check
+CVE-2022-21585 (Vulnerability in the Oracle Banking Trade Finance product of Oracle Fi ...)
+	TODO: check
+CVE-2022-21584 (Vulnerability in the Oracle Banking Trade Finance product of Oracle Fi ...)
+	TODO: check
+CVE-2022-21583 (Vulnerability in the Oracle Banking Trade Finance product of Oracle Fi ...)
+	TODO: check
+CVE-2022-21582 (Vulnerability in the Oracle Banking Trade Finance product of Oracle Fi ...)
+	TODO: check
+CVE-2022-21581 (Vulnerability in the Oracle Banking Trade Finance product of Oracle Fi ...)
+	TODO: check
+CVE-2022-21580 (Vulnerability in the Oracle Financial Services Revenue Management and  ...)
+	TODO: check
+CVE-2022-21579 (Vulnerability in the Oracle FLEXCUBE Universal Banking product of Orac ...)
+	TODO: check
+CVE-2022-21578 (Vulnerability in the Oracle FLEXCUBE Universal Banking product of Orac ...)
+	TODO: check
+CVE-2022-21577 (Vulnerability in the Oracle FLEXCUBE Universal Banking product of Orac ...)
+	TODO: check
+CVE-2022-21576 (Vulnerability in the Oracle FLEXCUBE Universal Banking product of Orac ...)
+	TODO: check
+CVE-2022-21575 (Vulnerability in the Oracle WebCenter Sites Support Tools product of O ...)
+	TODO: check
+CVE-2022-21574 (Vulnerability in the Oracle Communications Billing and Revenue Managem ...)
+	TODO: check
+CVE-2022-21573 (Vulnerability in the Oracle Communications Billing and Revenue Managem ...)
+	TODO: check
+CVE-2022-21572 (Vulnerability in the Oracle Communications Billing and Revenue Managem ...)
+	TODO: check
+CVE-2022-21571 (Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualiza ...)
 	- virtualbox <unfixed>
-CVE-2022-21570
-	RESERVED
-CVE-2022-21569
-	RESERVED
-CVE-2022-21568
-	RESERVED
-CVE-2022-21567
-	RESERVED
-CVE-2022-21566
-	RESERVED
-CVE-2022-21565
-	RESERVED
-CVE-2022-21564
-	RESERVED
-CVE-2022-21563
-	RESERVED
-CVE-2022-21562
-	RESERVED
-CVE-2022-21561
-	RESERVED
-CVE-2022-21560
-	RESERVED
-CVE-2022-21559
-	RESERVED
-CVE-2022-21558
-	RESERVED
-CVE-2022-21557
-	RESERVED
-CVE-2022-21556
-	RESERVED
-CVE-2022-21555
-	RESERVED
-CVE-2022-21554
-	RESERVED
+CVE-2022-21570 (Vulnerability in the Oracle Coherence product of Oracle Fusion Middlew ...)
+	TODO: check
+CVE-2022-21569 (Vulnerability in the MySQL Server product of Oracle MySQL (component:  ...)
+	TODO: check
+CVE-2022-21568 (Vulnerability in the Oracle iReceivables product of Oracle E-Business  ...)
+	TODO: check
+CVE-2022-21567 (Vulnerability in the Oracle Workflow product of Oracle E-Business Suit ...)
+	TODO: check
+CVE-2022-21566 (Vulnerability in the Oracle Applications Framework product of Oracle E ...)
+	TODO: check
+CVE-2022-21565 (Vulnerability in the Java VM component of Oracle Database Server. Supp ...)
+	TODO: check
+CVE-2022-21564 (Vulnerability in the Oracle WebLogic Server product of Oracle Fusion M ...)
+	TODO: check
+CVE-2022-21563 (Vulnerability in the Oracle ZFS Storage Appliance Kit product of Oracl ...)
+	TODO: check
+CVE-2022-21562 (Vulnerability in the Oracle SOA Suite product of Oracle Fusion Middlew ...)
+	TODO: check
+CVE-2022-21561 (Vulnerability in the JD Edwards EnterpriseOne Tools product of Oracle  ...)
+	TODO: check
+CVE-2022-21560 (Vulnerability in the Oracle WebLogic Server product of Oracle Fusion M ...)
+	TODO: check
+CVE-2022-21559 (Vulnerability in the Oracle Commerce Platform product of Oracle Commer ...)
+	TODO: check
+CVE-2022-21558 (Vulnerability in the Oracle Crystal Ball product of Oracle Constructio ...)
+	TODO: check
+CVE-2022-21557 (Vulnerability in the Oracle WebLogic Server product of Oracle Fusion M ...)
+	TODO: check
+CVE-2022-21556 (Vulnerability in the MySQL Server product of Oracle MySQL (component:  ...)
+	TODO: check
+CVE-2022-21555 (Vulnerability in the MySQL Shell for VS Code product of Oracle MySQL ( ...)
+	TODO: check
+CVE-2022-21554 (Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualiza ...)
 	- virtualbox <unfixed>
-CVE-2022-21553
-	RESERVED
-CVE-2022-21552
-	RESERVED
-CVE-2022-21551
-	RESERVED
-CVE-2022-21550
-	RESERVED
-CVE-2022-21549
-	RESERVED
+CVE-2022-21553 (Vulnerability in the MySQL Server product of Oracle MySQL (component:  ...)
+	TODO: check
+CVE-2022-21552 (Vulnerability in the Oracle WebCenter Content product of Oracle Fusion ...)
+	TODO: check
+CVE-2022-21551 (Vulnerability in Oracle GoldenGate (component: Oracle GoldenGate). The ...)
+	TODO: check
+CVE-2022-21550 (Vulnerability in the MySQL Cluster product of Oracle MySQL (component: ...)
+	TODO: check
+CVE-2022-21549 (Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition ...)
 	- openjdk-17 <unfixed>
-CVE-2022-21548
-	RESERVED
-CVE-2022-21547
-	RESERVED
+CVE-2022-21548 (Vulnerability in the Oracle WebLogic Server product of Oracle Fusion M ...)
+	TODO: check
+CVE-2022-21547 (Vulnerability in the MySQL Server product of Oracle MySQL (component:  ...)
+	TODO: check
 CVE-2022-21546
 	RESERVED
-CVE-2022-21545
-	RESERVED
-CVE-2022-21544
-	RESERVED
-CVE-2022-21543
-	RESERVED
-CVE-2022-21542
-	RESERVED
-CVE-2022-21541
-	RESERVED
+CVE-2022-21545 (Vulnerability in the Oracle iRecruitment product of Oracle E-Business  ...)
+	TODO: check
+CVE-2022-21544 (Vulnerability in the Oracle FLEXCUBE Universal Banking product of Orac ...)
+	TODO: check
+CVE-2022-21543 (Vulnerability in the PeopleSoft Enterprise PeopleTools product of Orac ...)
+	TODO: check
+CVE-2022-21542 (Vulnerability in the JD Edwards EnterpriseOne Tools product of Oracle  ...)
+	TODO: check
+CVE-2022-21541 (Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition ...)
 	- openjdk-8 <unfixed>
 	- openjdk-11 <unfixed>
 	- openjdk-17 <unfixed>
-CVE-2022-21540
-	RESERVED
+CVE-2022-21540 (Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition ...)
 	- openjdk-8 <unfixed>
 	- openjdk-11 <unfixed>
 	- openjdk-17 <unfixed>
-CVE-2022-21539
-	RESERVED
-CVE-2022-21538
-	RESERVED
-CVE-2022-21537
-	RESERVED
-CVE-2022-21536
-	RESERVED
-CVE-2022-21535
-	RESERVED
-CVE-2022-21534
-	RESERVED
-CVE-2022-21533
-	RESERVED
-CVE-2022-21532
-	RESERVED
-CVE-2022-21531
-	RESERVED
-CVE-2022-21530
-	RESERVED
-CVE-2022-21529
-	RESERVED
-CVE-2022-21528
-	RESERVED
-CVE-2022-21527
-	RESERVED
-CVE-2022-21526
-	RESERVED
-CVE-2022-21525
-	RESERVED
-CVE-2022-21524
-	RESERVED
-CVE-2022-21523
-	RESERVED
-CVE-2022-21522
-	RESERVED
-CVE-2022-21521
-	RESERVED
-CVE-2022-21520
-	RESERVED
-CVE-2022-21519
-	RESERVED
-CVE-2022-21518
-	RESERVED
-CVE-2022-21517
-	RESERVED
-CVE-2022-21516
-	RESERVED
-CVE-2022-21515
-	RESERVED
-CVE-2022-21514
-	RESERVED
-CVE-2022-21513
-	RESERVED
-CVE-2022-21512
-	RESERVED
-CVE-2022-21511
-	RESERVED
-CVE-2022-21510
-	RESERVED
-CVE-2022-21509
-	RESERVED
-CVE-2022-21508
-	RESERVED
+CVE-2022-21539 (Vulnerability in the MySQL Server product of Oracle MySQL (component:  ...)
+	TODO: check
+CVE-2022-21538 (Vulnerability in the MySQL Server product of Oracle MySQL (component:  ...)
+	TODO: check
+CVE-2022-21537 (Vulnerability in the MySQL Server product of Oracle MySQL (component:  ...)
+	TODO: check
+CVE-2022-21536 (Vulnerability in the Enterprise Manager Base Platform product of Oracl ...)
+	TODO: check
+CVE-2022-21535 (Vulnerability in the MySQL Shell product of Oracle MySQL (component: S ...)
+	TODO: check
+CVE-2022-21534 (Vulnerability in the MySQL Server product of Oracle MySQL (component:  ...)
+	TODO: check
+CVE-2022-21533 (Vulnerability in the Oracle Solaris product of Oracle Systems (compone ...)
+	TODO: check
+CVE-2022-21532 (Vulnerability in the JD Edwards EnterpriseOne Orchestrator product of  ...)
+	TODO: check
+CVE-2022-21531 (Vulnerability in the MySQL Server product of Oracle MySQL (component:  ...)
+	TODO: check
+CVE-2022-21530 (Vulnerability in the MySQL Server product of Oracle MySQL (component:  ...)
+	TODO: check
+CVE-2022-21529 (Vulnerability in the MySQL Server product of Oracle MySQL (component:  ...)
+	TODO: check
+CVE-2022-21528 (Vulnerability in the MySQL Server product of Oracle MySQL (component:  ...)
+	TODO: check
+CVE-2022-21527 (Vulnerability in the MySQL Server product of Oracle MySQL (component:  ...)
+	TODO: check
+CVE-2022-21526 (Vulnerability in the MySQL Server product of Oracle MySQL (component:  ...)
+	TODO: check
+CVE-2022-21525 (Vulnerability in the MySQL Server product of Oracle MySQL (component:  ...)
+	TODO: check
+CVE-2022-21524 (Vulnerability in the Oracle Solaris product of Oracle Systems (compone ...)
+	TODO: check
+CVE-2022-21523 (Vulnerability in the Oracle BI Publisher product of Oracle Fusion Midd ...)
+	TODO: check
+CVE-2022-21522 (Vulnerability in the MySQL Server product of Oracle MySQL (component:  ...)
+	TODO: check
+CVE-2022-21521 (Vulnerability in the PeopleSoft Enterprise PeopleTools product of Orac ...)
+	TODO: check
+CVE-2022-21520 (Vulnerability in the PeopleSoft Enterprise PeopleTools product of Orac ...)
+	TODO: check
+CVE-2022-21519 (Vulnerability in the MySQL Cluster product of Oracle MySQL (component: ...)
+	TODO: check
+CVE-2022-21518 (Vulnerability in the Oracle Health Sciences Data Management Workbench  ...)
+	TODO: check
+CVE-2022-21517 (Vulnerability in the MySQL Server product of Oracle MySQL (component:  ...)
+	TODO: check
+CVE-2022-21516 (Vulnerability in the Enterprise Manager Base Platform product of Oracl ...)
+	TODO: check
+CVE-2022-21515 (Vulnerability in the MySQL Server product of Oracle MySQL (component:  ...)
+	TODO: check
+CVE-2022-21514 (Vulnerability in the Oracle Solaris product of Oracle Systems (compone ...)
+	TODO: check
+CVE-2022-21513 (Vulnerability in the Oracle ZFS Storage Appliance Kit product of Oracl ...)
+	TODO: check
+CVE-2022-21512 (Vulnerability in the PeopleSoft Enterprise PeopleTools product of Orac ...)
+	TODO: check
+CVE-2022-21511 (Vulnerability in the Oracle Database - Enterprise Edition Recovery com ...)
+	TODO: check
+CVE-2022-21510 (Vulnerability in the Oracle Database - Enterprise Edition Sharding com ...)
+	TODO: check
+CVE-2022-21509 (Vulnerability in the MySQL Server product of Oracle MySQL (component:  ...)
+	TODO: check
+CVE-2022-21508 (Vulnerability in Oracle Essbase (component: Security and Provisioning) ...)
+	TODO: check
 CVE-2022-21507
 	RESERVED
 CVE-2022-21506
@@ -49712,8 +49758,8 @@ CVE-2022-21457 (Vulnerability in the MySQL Server product of Oracle MySQL (compo
 	- mysql-8.0 8.0.29-1
 CVE-2022-21456 (Vulnerability in the PeopleSoft Enterprise PeopleTools product of Orac ...)
 	NOT-FOR-US: Oracle
-CVE-2022-21455
-	RESERVED
+CVE-2022-21455 (Vulnerability in the MySQL Server product of Oracle MySQL (component:  ...)
+	TODO: check
 CVE-2022-21454 (Vulnerability in the MySQL Server product of Oracle MySQL (component:  ...)
 	- mysql-5.7 <removed>
 	- mysql-8.0 8.0.29-1
@@ -49753,8 +49799,8 @@ CVE-2022-21441 (Vulnerability in the Oracle WebLogic Server product of Oracle Fu
 	NOT-FOR-US: Oracle
 CVE-2022-21440 (Vulnerability in the MySQL Server product of Oracle MySQL (component:  ...)
 	- mysql-8.0 8.0.29-1
-CVE-2022-21439
-	RESERVED
+CVE-2022-21439 (Vulnerability in the Oracle Solaris product of Oracle Systems (compone ...)
+	TODO: check
 CVE-2022-21438 (Vulnerability in the MySQL Server product of Oracle MySQL (component:  ...)
 	- mysql-8.0 8.0.29-1
 CVE-2022-21437 (Vulnerability in the MySQL Server product of Oracle MySQL (component:  ...)
@@ -49771,16 +49817,16 @@ CVE-2022-21434 (Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise E
 	- openjdk-18 18.0.1+10-1
 CVE-2022-21433
 	RESERVED
-CVE-2022-21432
-	RESERVED
+CVE-2022-21432 (Vulnerability in the Oracle Database - Enterprise Edition RDBMS Securi ...)
+	TODO: check
 CVE-2022-21431 (Vulnerability in the Oracle Communications Billing and Revenue Managem ...)
 	NOT-FOR-US: Oracle
 CVE-2022-21430 (Vulnerability in the Oracle Communications Billing and Revenue Managem ...)
 	NOT-FOR-US: Oracle
-CVE-2022-21429
-	RESERVED
-CVE-2022-21428
-	RESERVED
+CVE-2022-21429 (Vulnerability in the Oracle Communications Billing and Revenue Managem ...)
+	TODO: check
+CVE-2022-21428 (Vulnerability in the Oracle FLEXCUBE Universal Banking product of Orac ...)
+	TODO: check
 CVE-2022-21427 (Vulnerability in the MySQL Server product of Oracle MySQL (component:  ...)
 	- mysql-8.0 8.0.29-1
 	- mysql-5.7 <removed>



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/62fbf62cf6e509fb97a8025caa5f7592855a1d90

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/62fbf62cf6e509fb97a8025caa5f7592855a1d90
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20220720/59e05a86/attachment.htm>


More information about the debian-security-tracker-commits mailing list