[Git][security-tracker-team/security-tracker][master] Add new golang issues

Salvatore Bonaccorso (@carnil) carnil at debian.org
Thu May 12 08:24:54 BST 2022



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
7160340c by Salvatore Bonaccorso at 2022-05-12T09:24:26+02:00
Add new golang issues

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -2982,6 +2982,14 @@ CVE-2022-29527 (Amazon AWS amazon-ssm-agent before 3.1.1208.0 creates a world-wr
 	NOT-FOR-US: Amazon AWS amazon-ssm-agent
 CVE-2022-29526
 	RESERVED
+	- golang-1.18 <unfixed>
+	- golang-1.17 <unfixed>
+	NOTE: https://go.dev/issue/52313
+	NOTE: https://groups.google.com/g/golang-announce/c/Y5qrqw_lWdU
+	NOTE: Master : https://github.com/golang/go/commit/f66925e854e71e0c54b581885380a490d7afa30c
+	NOTE: Branch.go1.17 : https://github.com/golang/go/commit/04781d14d2d33acbaf70f77e3a58ae0f3c90757c (1.17.10)
+	NOTE: Branch.go1.18 : https://github.com/golang/go/commit/c0599c5b781de023974519194df6b0c4ebb0adff (1.18.2)
+	TODO: check older versions
 CVE-2022-1417 (Improper access control in GitLab CE/EE affecting all versions startin ...)
 	TODO: check
 CVE-2022-1416



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/7160340c1c4001fd39a5b53efdac8e8d46a763c7

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/7160340c1c4001fd39a5b53efdac8e8d46a763c7
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20220512/8e7a9c1e/attachment.htm>


More information about the debian-security-tracker-commits mailing list