[Git][security-tracker-team/security-tracker][master] CVE-2021-23556/guake 3.8.5-1

Neil Williams (@codehelp) codehelp at debian.org
Thu Mar 24 09:56:01 GMT 2022



Neil Williams pushed to branch master at Debian Security Tracker / security-tracker


Commits:
d97b1bf0 by Neil Williams at 2022-03-24T09:55:05+00:00
CVE-2021-23556/guake 3.8.5-1

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -78429,7 +78429,13 @@ CVE-2021-23558 (The package bmoor before 0.10.1 are vulnerable to Prototype Poll
 CVE-2021-23557
 	RESERVED
 CVE-2021-23556 (The package guake before 3.8.5 are vulnerable to Exposed Dangerous Met ...)
-	TODO: check
+	- guake 3.8.5-1
+	NOTE: https://github.com/Guake/guake/commit/b769b3a5fd71a107c58679d217cccc971b4196b4 (3.8.5)
+	NOTE: https://github.com/Guake/guake/pull/2017/commits/e3d671120bfe7ba28f50e256cc5e8a629781b888
+	NOTE: https://github.com/Guake/guake/issues/1796
+	NOTE: https://github.com/Guake/guake/pull/2017
+	NOTE: https://github.com/Guake/guake/releases
+	NOTE: https://snyk.io/vuln/SNYK-PYTHON-GUAKE-2386334
 CVE-2021-23555 (The package vm2 before 3.9.6 are vulnerable to Sandbox Bypass via dire ...)
 	NOT-FOR-US: Node vm2
 CVE-2021-23554



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/d97b1bf0caebb7b328b553d36fc3e5fc7b7630d1

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/d97b1bf0caebb7b328b553d36fc3e5fc7b7630d1
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20220324/add17d4f/attachment.htm>


More information about the debian-security-tracker-commits mailing list