[Git][security-tracker-team/security-tracker][master] recent zlib issue also fixed in libz-mingw-w64

Moritz Muehlenhoff (@jmm) jmm at debian.org
Mon Sep 5 09:48:39 BST 2022



Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker


Commits:
a2d1ad5a by Moritz Muehlenhoff at 2022-09-05T10:48:13+02:00
recent zlib issue also fixed in libz-mingw-w64

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -6171,6 +6171,8 @@ CVE-2022-2668 (An issue was discovered in Keycloak that allows arbitrary Javascr
 CVE-2022-37434 (zlib through 1.2.12 has a heap-based buffer over-read or buffer overfl ...)
 	{DSA-5218-1}
 	- zlib 1:1.2.11.dfsg-4.1 (bug #1016710)
+	- libz-mingw-w64 1.2.12+dfsg-2
+	[bullseye] - libz-mingw-w64 <no-dsa> (Minor issue)
 	NOTE: https://github.com/ivd38/zlib_overflow
 	NOTE: https://github.com/madler/zlib/commit/eff308af425b67093bab25f80f1ae950166bece1
 	NOTE: https://github.com/madler/zlib/commit/1eb7682f845ac9e9bf9ae35bbfb3bad5dacbd91d



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/a2d1ad5a84c45f6503445448cd864515f8f81786

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/a2d1ad5a84c45f6503445448cd864515f8f81786
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20220905/0d2c493a/attachment.htm>


More information about the debian-security-tracker-commits mailing list