[Git][security-tracker-team/security-tracker][master] mark five linux issues reported via OpenAnolis as <undetermined> until

Moritz Muehlenhoff (@jmm) jmm at debian.org
Sat Sep 17 15:58:21 BST 2022



Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker


Commits:
a9beba40 by Moritz Muehlenhoff at 2022-09-17T16:57:23+02:00
mark five linux issues reported via OpenAnolis as <undetermined> until
bugs are opened up (no need to add to kernel-sec until that happens)

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -1511,15 +1511,20 @@ CVE-2022-40139
 CVE-2022-40138
 	RESERVED
 CVE-2022-40133 (A use-after-free(UAF) vulnerability was found in function 'vmw_execbuf ...)
-	TODO: check, specific to OpenAnolis?
+	- linux <undetermined>
+	NOTE: Might be OpenAnolis specific issues, check when Bugzilla entries are public
 CVE-2022-38457 (A use-after-free(UAF) vulnerability was found in function 'vmw_cmd_res ...)
-	TODO: check, specific to OpenAnolis?
+	- linux <undetermined>
+	NOTE: Might be OpenAnolis specific issues, check when Bugzilla entries are public
 CVE-2022-38096 (A NULL pointer dereference vulnerability was found in vmwgfx driver in ...)
-	TODO: check, specific to OpenAnolis?
+	- linux <undetermined>
+	NOTE: Might be OpenAnolis specific issues, check when Bugzilla entries are public
 CVE-2022-36402 (An integer overflow vulnerability was found in vmwgfx driver in driver ...)
-	TODO: check, specific to OpenAnolis?
+	- linux <undetermined>
+	NOTE: Might be OpenAnolis specific issues, check when Bugzilla entries are public
 CVE-2022-36280 (An out-of-bounds(OOB) memory access vulnerability was found in vmwgfx  ...)
-	TODO: check, specific to OpenAnolis?
+	- linux <undetermined>
+	NOTE: Might be OpenAnolis specific issues, check when Bugzilla entries are public
 CVE-2022-3147 (Mattermost version 7.0.x and earlier fails to sufficiently limit the i ...)
 	- mattermost-server <itp> (bug #823556)
 CVE-2022-3146



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/a9beba40da7116a6f00524b6f5820d881bd94c5c

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/a9beba40da7116a6f00524b6f5820d881bd94c5c
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20220917/b782d13c/attachment.htm>


More information about the debian-security-tracker-commits mailing list