[Git][security-tracker-team/security-tracker][master] Add CVE-2022-3108{4,5,6,7,8}/ldap-account-manager

Salvatore Bonaccorso (@carnil) carnil at debian.org
Tue Jun 28 21:44:05 BST 2022



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
9f845bc1 by Salvatore Bonaccorso at 2022-06-28T22:43:43+02:00
Add CVE-2022-3108{4,5,6,7,8}/ldap-account-manager

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -9447,15 +9447,25 @@ CVE-2022-31090 (Guzzle, an extensible PHP HTTP client. `Authorization` headers o
 CVE-2022-31089 (Parse Server is an open source backend that can be deployed to any inf ...)
 	TODO: check
 CVE-2022-31088 (LDAP Account Manager (LAM) is a webfrontend for managing entries (e.g. ...)
-	TODO: check
+	- ldap-account-manager <unfixed>
+	NOTE: https://github.com/LDAPAccountManager/lam/security/advisories/GHSA-wxf8-9x99-6gp4
+	NOTE: Merge: https://github.com/LDAPAccountManager/lam/commit/f1d5d04952f39a1b4ea203d3964fa88e1429dfd4 (lam_8_0)
 CVE-2022-31087 (LDAP Account Manager (LAM) is a webfrontend for managing entries (e.g. ...)
-	TODO: check
+	- ldap-account-manager <unfixed>
+	NOTE: https://github.com/LDAPAccountManager/lam/security/advisories/GHSA-q8g5-45m4-q95p
+	NOTE: Merge: https://github.com/LDAPAccountManager/lam/commit/f1d5d04952f39a1b4ea203d3964fa88e1429dfd4 (lam_8_0)
 CVE-2022-31086 (LDAP Account Manager (LAM) is a webfrontend for managing entries (e.g. ...)
-	TODO: check
+	- ldap-account-manager <unfixed>
+	NOTE: https://github.com/LDAPAccountManager/lam/security/advisories/GHSA-q9pc-x84w-982x
+	NOTE: Merge: https://github.com/LDAPAccountManager/lam/commit/f1d5d04952f39a1b4ea203d3964fa88e1429dfd4 (lam_8_0)
 CVE-2022-31085 (LDAP Account Manager (LAM) is a webfrontend for managing entries (e.g. ...)
-	TODO: check
+	- ldap-account-manager <unfixed>
+	NOTE: https://github.com/LDAPAccountManager/lam/security/advisories/GHSA-6m3q-5c84-6h6j
+	NOTE: Merge: https://github.com/LDAPAccountManager/lam/commit/f1d5d04952f39a1b4ea203d3964fa88e1429dfd4 (lam_8_0)
 CVE-2022-31084 (LDAP Account Manager (LAM) is a webfrontend for managing entries (e.g. ...)
-	TODO: check
+	- ldap-account-manager <unfixed>
+	NOTE: https://github.com/LDAPAccountManager/lam/security/advisories/GHSA-r387-grjx-qgvw
+	NOTE: Merge: https://github.com/LDAPAccountManager/lam/commit/f1d5d04952f39a1b4ea203d3964fa88e1429dfd4 (lam_8_0)
 CVE-2022-31083 (Parse Server is an open source backend that can be deployed to any inf ...)
 	NOT-FOR-US: Node parse-server
 CVE-2022-31082 (GLPI is a Free Asset and IT Management Software package, Data center m ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/9f845bc179bb2e28de1bcc3ed0c6fdd3d2a9684e

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/9f845bc179bb2e28de1bcc3ed0c6fdd3d2a9684e
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20220628/af4aae9f/attachment.htm>


More information about the debian-security-tracker-commits mailing list