[Git][security-tracker-team/security-tracker][master] Reference upstream commits for CVE-2022-0547/openvpn
Salvatore Bonaccorso (@carnil)
carnil at debian.org
Mon Mar 21 05:32:46 GMT 2022
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits:
babcb38d by Salvatore Bonaccorso at 2022-03-21T06:32:13+01:00
Reference upstream commits for CVE-2022-0547/openvpn
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -7048,6 +7048,8 @@ CVE-2022-24669
CVE-2022-0547 (OpenVPN 2.1 until v2.4.12 and v2.5.6 may enable authentication bypass ...)
- openvpn 2.5.6-1 (bug #1008015)
NOTE: https://community.openvpn.net/openvpn/wiki/CVE-2022-0547
+ NOTE: https://github.com/OpenVPN/openvpn/commit/58ec3bb4aac77131118dbbc39a65181e7847adee (v2.4.12)
+ NOTE: https://github.com/OpenVPN/openvpn/commit/af3e382649d96ae77cc5e42be8270f355e5cfec5 (v2.5.6)
CVE-2022-0546 (A missing bounds check in the image loader used in Blender 3.x and 2.9 ...)
- blender <unfixed>
NOTE: Issue: https://developer.blender.org/T94572
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/babcb38d228f59af973a3138772e51b9804360c3
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/babcb38d228f59af973a3138772e51b9804360c3
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20220321/a7710e66/attachment.htm>
More information about the debian-security-tracker-commits
mailing list