[Git][security-tracker-team/security-tracker][master] Record upstream commit for CVE-2022-40674

Salvatore Bonaccorso (@carnil) carnil at debian.org
Wed Sep 14 09:51:14 BST 2022



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
a644df52 by Salvatore Bonaccorso at 2022-09-14T10:51:02+02:00
Record upstream commit for CVE-2022-40674

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -2,6 +2,7 @@ CVE-2022-40674 (libexpat before 2.4.9 has a use-after-free in the doContent func
 	- expat <unfixed>
 	NOTE: https://github.com/libexpat/libexpat/pull/629
 	NOTE: https://github.com/libexpat/libexpat/pull/640
+	NOTE: https://github.com/libexpat/libexpat/commit/4a32da87e931ba54393d465bb77c40b5c33d343b
 CVE-2022-40673 (KDiskMark before 3.1.0 lacks authorization checking for D-Bus methods  ...)
 	TODO: check
 CVE-2022-40670



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/a644df52764e93147ae8712a2b16e296340c6e30

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/a644df52764e93147ae8712a2b16e296340c6e30
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20220914/8ce05fd2/attachment.htm>


More information about the debian-security-tracker-commits mailing list