[Git][security-tracker-team/security-tracker][master] Add CVE-2022-31263/mastodon, itp'ed

Salvatore Bonaccorso (@carnil) carnil at debian.org
Thu May 26 08:36:33 BST 2022



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
6e7dc7c3 by Salvatore Bonaccorso at 2022-05-26T09:35:52+02:00
Add CVE-2022-31263/mastodon, itp'ed

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -988,7 +988,7 @@ CVE-2022-31265
 CVE-2022-31264 (Solana solana_rbpf before 0.2.29 has an addition integer overflow via  ...)
 	NOT-FOR-US: Solana rBPF
 CVE-2022-31263 (app/models/user.rb in Mastodon before 3.5.0 allows a bypass of e-mail  ...)
-	TODO: check
+	- mastodon <itp> (bug #859741)
 CVE-2022-31262
 	RESERVED
 CVE-2022-31261 (An XXE issue was discovered in Morpheus through 5.2.16 and 5.4.x throu ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/6e7dc7c39be79a2a2fd64c435802a30dcb3458b5

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/6e7dc7c39be79a2a2fd64c435802a30dcb3458b5
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20220526/583fdab6/attachment.htm>


More information about the debian-security-tracker-commits mailing list