[Git][security-tracker-team/security-tracker][master] new gpac issue

Moritz Muehlenhoff (@jmm) jmm at debian.org
Wed Jul 27 22:09:24 BST 2022



Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker


Commits:
103d850d by Moritz Muehlenhoff at 2022-07-27T23:02:57+02:00
new gpac issue

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -55,7 +55,11 @@ CVE-2022-2551
 CVE-2022-2550 (OS Command Injection in GitHub repository hestiacp/hestiacp prior to 1 ...)
 	NOT-FOR-US: Hestia Control Panel
 CVE-2022-2549 (NULL Pointer Dereference in GitHub repository gpac/gpac prior to v2.1. ...)
-	TODO: check
+	- gpac <unfixed>
+	[bullseye] - gpac <ignored> (Minor issue)
+	[buster] - gpac <ignored> (Minor issue)
+	NOTE: https://huntr.dev/bounties/c93083dc-177c-4ba0-ba83-9d7fb29a5537
+	NOTE: https://github.com/gpac/gpac/commit/0102c5d4db7fdbf08b5b591b2a6264de33867a07
 CVE-2022-36922 (Jenkins Lucene-Search Plugin 370.v62a5f618cd3a and earlier does not es ...)
 	NOT-FOR-US: Jenkins plugin
 CVE-2022-36921 (A missing permission check in Jenkins Coverity Plugin 1.11.4 and earli ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/103d850d31117e2a74383a90a2160e669a86d797

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/103d850d31117e2a74383a90a2160e669a86d797
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20220727/409a2551/attachment.htm>


More information about the debian-security-tracker-commits mailing list