[Git][security-tracker-team/security-tracker][master] Add CVE-2022-0849/radare2

Salvatore Bonaccorso (@carnil) carnil at debian.org
Sat Mar 5 20:25:08 GMT 2022



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
540a01f2 by Salvatore Bonaccorso at 2022-03-05T21:24:39+01:00
Add CVE-2022-0849/radare2

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -208,7 +208,9 @@ CVE-2022-0850
 	[stretch] - linux 4.9.290-1
 	NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=2060606
 CVE-2022-0849 (Use After Free in r_reg_get_name_idx in GitHub repository radareorg/ra ...)
-	TODO: check
+	- radare2 <unfixed>
+	NOTE: https://huntr.dev/bounties/29c5f76e-5f1f-43ab-a0c8-e31951e407b6
+	NOTE: https://github.com/radareorg/radare2/commit/10517e3ff0e609697eb8cde60ec8dc999ee5ea24
 CVE-2022-0848 (OS Command Injection in GitHub repository part-db/part-db prior to 0.5 ...)
 	TODO: check
 CVE-2022-26412



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/540a01f223467fc54cf67ac52e402df21068428c

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/540a01f223467fc54cf67ac52e402df21068428c
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20220305/6338d754/attachment.htm>


More information about the debian-security-tracker-commits mailing list