[Git][security-tracker-team/security-tracker][master] Reference upstream commits for CVE-2022-1664/dpkg

Salvatore Bonaccorso (@carnil) carnil at debian.org
Wed May 25 16:19:45 BST 2022



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
ccf372f9 by Salvatore Bonaccorso at 2022-05-25T17:19:09+02:00
Reference upstream commits for CVE-2022-1664/dpkg

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -2827,6 +2827,10 @@ CVE-2022-1665
 CVE-2022-1664 [directory traversal for in-place extracts with untrusted v2 and v3 source packages with debian.tar]
 	RESERVED
 	- dpkg <unfixed>
+	NOTE: https://git.dpkg.org/cgit/dpkg/dpkg.git/commit/?id=7a6c03cb34d4a09f35df2f10779cbf1b70a5200b (1.21.8)
+	NOTE: https://git.dpkg.org/cgit/dpkg/dpkg.git/commit/?id=58814cacee39c4ce9e2cd0e3a3b9b57ad437eff5 (1.20.10)
+	NOTE: https://git.dpkg.org/cgit/dpkg/dpkg.git/commit/?id=1f23dddc17f69c9598477098c7fb9936e15fa495 (1.19.8)
+	NOTE: https://git.dpkg.org/cgit/dpkg/dpkg.git/commit/?id=faa4c92debe45412bfcf8a44f26e827800bb24be (1.18.26)
 CVE-2022-1663
 	RESERVED
 CVE-2022-30529



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/ccf372f9e75cd012d49445e20e26d8e220de6c0a

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/ccf372f9e75cd012d49445e20e26d8e220de6c0a
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20220525/e050e47f/attachment-0001.htm>


More information about the debian-security-tracker-commits mailing list