[Git][security-tracker-team/security-tracker][master] automatic update

Salvatore Bonaccorso (@carnil) carnil at debian.org
Sat Mar 19 08:10:18 GMT 2022



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
9ad6ac5f by security tracker role at 2022-03-19T08:10:10+00:00
automatic update

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -1,3 +1,11 @@
+CVE-2022-27250 (The UNISOC chipset through 2022-03-15 allows attackers to obtain remot ...)
+	TODO: check
+CVE-2022-1030
+	RESERVED
+CVE-2022-1029
+	RESERVED
+CVE-2022-1028
+	RESERVED
 CVE-2022-27249
 	RESERVED
 CVE-2022-27248
@@ -103,8 +111,8 @@ CVE-2022-27228
 	RESERVED
 CVE-2022-27227
 	RESERVED
-CVE-2022-27226
-	RESERVED
+CVE-2022-27226 (A CSRF issue in /api/crontab on iRZ Mobile Routers through 2022-03-16  ...)
+	TODO: check
 CVE-2022-0999
 	RESERVED
 CVE-2022-0998
@@ -2675,12 +2683,12 @@ CVE-2022-26269
 	RESERVED
 CVE-2022-26268
 	RESERVED
-CVE-2022-26267
-	RESERVED
-CVE-2022-26266
-	RESERVED
-CVE-2022-26265
-	RESERVED
+CVE-2022-26267 (Piwigo v12.2.0 was discovered to contain an information leak via the a ...)
+	TODO: check
+CVE-2022-26266 (Piwigo v12.2.0 was discovered to contain a SQL injection vulnerability ...)
+	TODO: check
+CVE-2022-26265 (Contao Managed Edition v1.5.0 was discovered to contain a remote comma ...)
+	TODO: check
 CVE-2022-26264
 	RESERVED
 CVE-2022-26263
@@ -4483,14 +4491,14 @@ CVE-2022-25583
 	RESERVED
 CVE-2022-25582
 	RESERVED
-CVE-2022-25581
-	RESERVED
+CVE-2022-25581 (Classcms v2.5 and below contains an arbitrary file upload via the comp ...)
+	TODO: check
 CVE-2022-25580
 	RESERVED
 CVE-2022-25579
 	RESERVED
-CVE-2022-25578
-	RESERVED
+CVE-2022-25578 (taocms v3.0.2 allows attackers to execute code injection via arbitrari ...)
+	TODO: check
 CVE-2022-25577
 	RESERVED
 CVE-2022-25576
@@ -4735,76 +4743,76 @@ CVE-2022-25463
 	RESERVED
 CVE-2022-25462
 	RESERVED
-CVE-2022-25461
-	RESERVED
-CVE-2022-25460
-	RESERVED
-CVE-2022-25459
-	RESERVED
-CVE-2022-25458
-	RESERVED
-CVE-2022-25457
-	RESERVED
-CVE-2022-25456
-	RESERVED
-CVE-2022-25455
-	RESERVED
-CVE-2022-25454
-	RESERVED
-CVE-2022-25453
-	RESERVED
-CVE-2022-25452
-	RESERVED
-CVE-2022-25451
-	RESERVED
-CVE-2022-25450
-	RESERVED
-CVE-2022-25449
-	RESERVED
-CVE-2022-25448
-	RESERVED
-CVE-2022-25447
-	RESERVED
-CVE-2022-25446
-	RESERVED
-CVE-2022-25445
-	RESERVED
+CVE-2022-25461 (Tenda AC6 v15.03.05.09_multi was discovered to contain a stack overflo ...)
+	TODO: check
+CVE-2022-25460 (Tenda AC6 v15.03.05.09_multi was discovered to contain a stack overflo ...)
+	TODO: check
+CVE-2022-25459 (Tenda AC6 v15.03.05.09_multi was discovered to contain a stack overflo ...)
+	TODO: check
+CVE-2022-25458 (Tenda AC6 v15.03.05.09_multi was discovered to contain a stack overflo ...)
+	TODO: check
+CVE-2022-25457 (Tenda AC6 v15.03.05.09_multi was discovered to contain a stack overflo ...)
+	TODO: check
+CVE-2022-25456 (Tenda AC6 v15.03.05.09_multi was discovered to contain a stack overflo ...)
+	TODO: check
+CVE-2022-25455 (Tenda AC6 v15.03.05.09_multi was discovered to contain a stack overflo ...)
+	TODO: check
+CVE-2022-25454 (Tenda AC6 v15.03.05.09_multi was discovered to contain a stack overflo ...)
+	TODO: check
+CVE-2022-25453 (Tenda AC6 v15.03.05.09_multi was discovered to contain a stack overflo ...)
+	TODO: check
+CVE-2022-25452 (Tenda AC6 v15.03.05.09_multi was discovered to contain a stack overflo ...)
+	TODO: check
+CVE-2022-25451 (Tenda AC6 V15.03.05.09_multi was discovered to contain a stack overflo ...)
+	TODO: check
+CVE-2022-25450 (Tenda AC6 V15.03.05.09_multi was discovered to contain a stack overflo ...)
+	TODO: check
+CVE-2022-25449 (Tenda AC6 v15.03.05.09_multi was discovered to contain a stack overflo ...)
+	TODO: check
+CVE-2022-25448 (Tenda AC6 v15.03.05.09_multi was discovered to contain a stack overflo ...)
+	TODO: check
+CVE-2022-25447 (Tenda AC6 v15.03.05.09_multi was discovered to contain a stack overflo ...)
+	TODO: check
+CVE-2022-25446 (Tenda AC6 v15.03.05.09_multi was discovered to contain a stack overflo ...)
+	TODO: check
+CVE-2022-25445 (Tenda AC6 v15.03.05.09_multi was discovered to contain a stack overflo ...)
+	TODO: check
 CVE-2022-25444
 	RESERVED
 CVE-2022-25443
 	RESERVED
 CVE-2022-25442
 	RESERVED
-CVE-2022-25441
-	RESERVED
-CVE-2022-25440
-	RESERVED
-CVE-2022-25439
-	RESERVED
-CVE-2022-25438
-	RESERVED
-CVE-2022-25437
-	RESERVED
+CVE-2022-25441 (Tenda AC9 v15.03.2.21 was discovered to contain a remote command execu ...)
+	TODO: check
+CVE-2022-25440 (Tenda AC9 v15.03.2.21 was discovered to contain a stack overflow via t ...)
+	TODO: check
+CVE-2022-25439 (Tenda AC9 v15.03.2.21 was discovered to contain a stack overflow via t ...)
+	TODO: check
+CVE-2022-25438 (Tenda AC9 v15.03.2.21 was discovered to contain a remote command execu ...)
+	TODO: check
+CVE-2022-25437 (Tenda AC9 v15.03.2.21 was discovered to contain a stack overflow via t ...)
+	TODO: check
 CVE-2022-25436
 	RESERVED
-CVE-2022-25435
-	RESERVED
-CVE-2022-25434
-	RESERVED
-CVE-2022-25433
-	RESERVED
+CVE-2022-25435 (Tenda AC9 v15.03.2.21 was discovered to contain a stack overflow via t ...)
+	TODO: check
+CVE-2022-25434 (Tenda AC9 v15.03.2.21 was discovered to contain a stack overflow via t ...)
+	TODO: check
+CVE-2022-25433 (Tenda AC9 v15.03.2.21 was discovered to contain a stack overflow via t ...)
+	TODO: check
 CVE-2022-25432
 	RESERVED
-CVE-2022-25431
-	RESERVED
+CVE-2022-25431 (Tenda AC9 v15.03.2.21 was discovered to contain multiple stack overflo ...)
+	TODO: check
 CVE-2022-25430
 	RESERVED
-CVE-2022-25429
-	RESERVED
-CVE-2022-25428
-	RESERVED
-CVE-2022-25427
-	RESERVED
+CVE-2022-25429 (Tenda AC9 v15.03.2.21 was discovered to contain a buffer overflow via  ...)
+	TODO: check
+CVE-2022-25428 (Tenda AC9 v15.03.2.21 was discovered to contain a stack overflow via t ...)
+	TODO: check
+CVE-2022-25427 (Tenda AC9 v15.03.2.21 was discovered to contain a stack overflow via t ...)
+	TODO: check
 CVE-2022-25426
 	RESERVED
 CVE-2022-25425
@@ -4877,10 +4885,10 @@ CVE-2022-25392
 	RESERVED
 CVE-2022-25391
 	RESERVED
-CVE-2022-25390
-	RESERVED
-CVE-2022-25389
-	RESERVED
+CVE-2022-25390 (DCN Firewall DCME-520 was discovered to contain a remote command execu ...)
+	TODO: check
+CVE-2022-25389 (DCN Firewall DCME-520 was discovered to contain an arbitrary file down ...)
+	TODO: check
 CVE-2022-25388
 	RESERVED
 CVE-2022-25387
@@ -73340,7 +73348,7 @@ CVE-2021-25221
 	RESERVED
 CVE-2021-25220 [DNS forwarders - cache poisoning vulnerability]
 	RESERVED
-	{DSA-5105-1}
+	{DSA-5105-1 DLA-2955-1}
 	- bind9 1:9.18.1-1
 	NOTE: https://kb.isc.org/docs/cve-2021-25220
 	NOTE: Fixed by https://gitlab.isc.org/isc-projects/bind9/-/commit/fc9cb6cf91c1a36b797ffef0a277dbb3989d43dc



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/9ad6ac5f0318f7657a558e50335249fae8d6fcce

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/9ad6ac5f0318f7657a558e50335249fae8d6fcce
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20220319/4d443665/attachment.htm>


More information about the debian-security-tracker-commits mailing list