[Git][security-tracker-team/security-tracker][master] Track fixed version for CVE-2022-38784/poppler via unstable
Salvatore Bonaccorso (@carnil)
carnil at debian.org
Thu Sep 8 16:55:18 BST 2022
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits:
669b96c5 by Salvatore Bonaccorso at 2022-09-08T17:54:47+02:00
Track fixed version for CVE-2022-38784/poppler via unstable
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -3274,7 +3274,7 @@ CVE-2022-38785
REJECTED
CVE-2022-38784 (Poppler prior to and including 22.08.0 contains an integer overflow in ...)
{DSA-5224-1}
- - poppler <unfixed> (bug #1018971)
+ - poppler 22.08.0-2.1 (bug #1018971)
NOTE: Fixed by: https://gitlab.freedesktop.org/poppler/poppler/-/commit/27354e9d9696ee2bc063910a6c9a6b27c5184a52 (poppler-22.09.0)
NOTE: This is CVE-2021-30860 in Apple CoreGraphics and CVE-2022-38171 in xpdf
NOTE: https://gist.github.com/zmanion/b2ed0d1a0cec163ecd07d5e3d9740dc6
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/669b96c50c67935e98e966383c09438cbfd6dcff
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/669b96c50c67935e98e966383c09438cbfd6dcff
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20220908/88d3b9a3/attachment-0001.htm>
More information about the debian-security-tracker-commits
mailing list