[Git][security-tracker-team/security-tracker][master] Add CVE-2022-38170/airflow

Salvatore Bonaccorso (@carnil) carnil at debian.org
Fri Sep 2 21:24:31 BST 2022



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
54a7e93f by Salvatore Bonaccorso at 2022-09-02T22:24:03+02:00
Add CVE-2022-38170/airflow

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -4255,7 +4255,7 @@ CVE-2022-2787 (Schroot before 1.6.13 had too permissive rules on chroot or sessi
 	- schroot 1.6.12-2
 	NOTE: https://codeberg.org/shelter/reschroot/commit/6f7166a285e1e97aea390be633591f9791b29a6d
 CVE-2022-38170 (In Apache Airflow prior to 2.3.4, an insecure umask was configured for ...)
-	TODO: check
+	- airflow <itp> (bug #819700)
 CVE-2022-38082
 	RESERVED
 CVE-2022-2786



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/54a7e93feb18f7b6908d4a7e78fa1b5f60ea7841

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/54a7e93feb18f7b6908d4a7e78fa1b5f60ea7841
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20220902/0918d884/attachment.htm>


More information about the debian-security-tracker-commits mailing list