[Git][security-tracker-team/security-tracker][master] Add CVE-2022-41922/yii

Salvatore Bonaccorso (@carnil) carnil at debian.org
Wed Nov 23 20:52:40 GMT 2022



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
eacc683d by Salvatore Bonaccorso at 2022-11-23T21:50:07+01:00
Add CVE-2022-41922/yii

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -13276,7 +13276,7 @@ CVE-2022-41924 (A vulnerability identified in the Tailscale Windows client allow
 CVE-2022-41923 (Grails Spring Security Core plugin is vulnerable to privilege escalati ...)
 	TODO: check
 CVE-2022-41922 (`yiisoft/yii` before version 1.1.27 are vulnerable to Remote Code Exec ...)
-	TODO: check
+	- yii <itp> (bug #597899)
 CVE-2022-41921
 	RESERVED
 CVE-2022-41920 (Lancet is a general utility library for the go programming language. A ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/eacc683d96201d67c954d034cd134944dceb10f7

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/eacc683d96201d67c954d034cd134944dceb10f7
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20221123/2186b2e4/attachment.htm>


More information about the debian-security-tracker-commits mailing list