[Git][security-tracker-team/security-tracker][master] 2 commits: Triage CVE-2022-37026 in erlang for buster LTS.

Chris Lamb (@lamby) lamby at debian.org
Thu Oct 13 17:05:57 BST 2022



Chris Lamb pushed to branch master at Debian Security Tracker / security-tracker


Commits:
bc720e5e by Chris Lamb at 2022-10-13T09:04:08-07:00
Triage CVE-2022-37026 in erlang for buster LTS.

- - - - -
e42bbb09 by Chris Lamb at 2022-10-13T09:04:41-07:00
Triage CVE-2022-39282 & CVE-2022-39283 in freerdp2 for buster LTS.

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -8480,10 +8480,12 @@ CVE-2022-39284 (CodeIgniter is a PHP full-stack web framework. In versions prior
 CVE-2022-39283 (FreeRDP is a free remote desktop protocol library and clients. All Fre ...)
 	- freerdp2 2.8.1+dfsg1-1 (bug #1021659)
 	[bullseye] - freerdp2 <no-dsa> (Minor issue)
+	[buster] - freerdp2 <no-dsa> (Minor issue)
 	NOTE: https://github.com/FreeRDP/FreeRDP/security/advisories/GHSA-6cf9-3328-qrvh
 CVE-2022-39282 (FreeRDP is a free remote desktop protocol library and clients. FreeRDP ...)
 	- freerdp2 2.8.1+dfsg1-1 (bug #1021659)
 	[bullseye] - freerdp2 <no-dsa> (Minor issue)
+	[buster] - freerdp2 <no-dsa> (Minor issue)
 	NOTE: https://github.com/FreeRDP/FreeRDP/security/advisories/GHSA-c45q-wcpg-mxjq
 CVE-2022-39281 (fat_free_crm is a an open source, Ruby on Rails customer relationship  ...)
 	NOT-FOR-US: fat_free_crm
@@ -14805,6 +14807,7 @@ CVE-2022-37027 (Ahsay AhsayCBS 9.1.4.0 allows an authenticated system user to in
 CVE-2022-37026 (In Erlang/OTP before 23.3.4.15, 24.x before 24.3.4.2, and 25.x before  ...)
 	- erlang 1:24.3.4.5+dfsg-1
 	[bullseye] - erlang <no-dsa> (Minor issue)
+	[buster] - erlang <no-dsa> (Minor issue)
 	NOTE: https://erlangforums.com/t/otp-25-1-released/1854
 CVE-2022-37025 (An improper privilege management vulnerability in McAfee Security Scan ...)
 	NOT-FOR-US: McAfee



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/compare/1c3e219774f53ecddcd3769888810929ba781dc8...e42bbb0986fd64ad0bb4632561af7f6cfbb62b3d

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/compare/1c3e219774f53ecddcd3769888810929ba781dc8...e42bbb0986fd64ad0bb4632561af7f6cfbb62b3d
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20221013/9cd88457/attachment-0001.htm>


More information about the debian-security-tracker-commits mailing list