[Git][security-tracker-team/security-tracker][master] Add initial tracking for CVE-2023-2884{0,1,2}/docker.io

Salvatore Bonaccorso (@carnil) carnil at debian.org
Thu Apr 6 05:46:28 BST 2023



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
7b882291 by Salvatore Bonaccorso at 2023-04-06T06:45:47+02:00
Add initial tracking for CVE-2023-2884{0,1,2}/docker.io

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -1769,11 +1769,21 @@ CVE-2023-28844 (Nextcloud server is an open source home cloud implementation. In
 CVE-2023-28843 (PrestaShop/paypal is an open source module for the PrestaShop web comm ...)
 	NOT-FOR-US: PrestaShop
 CVE-2023-28842 (Moby) is an open source container framework developed by Docker Inc. t ...)
-	TODO: check
+	- docker.io 20.10.24+dfsg1-1
+	NOTE: https://github.com/moby/moby/security/advisories/GHSA-6wrf-mxfj-pf5p
+	NOTE: https://github.com/moby/libnetwork/security/advisories/GHSA-gvm4-2qqg-m333
 CVE-2023-28841 (Moby is an open source container framework developed by Docker Inc. th ...)
-	TODO: check
+	- docker.io 20.10.24+dfsg1-1
+	NOTE: https://github.com/moby/moby/security/advisories/GHSA-33pg-m6jh-5237
+	NOTE: https://github.com/moby/libnetwork/security/advisories/GHSA-gvm4-2qqg-m333
+	NOTE: https://github.com/moby/moby/issues/43382
+	NOTE: https://github.com/moby/moby/pull/45118
 CVE-2023-28840 (Moby is an open source container framework developed by Docker Inc. th ...)
-	TODO: check
+	- docker.io 20.10.24+dfsg1-1
+	NOTE: https://github.com/moby/moby/security/advisories/GHSA-232p-vwff-86mp
+	NOTE: https://github.com/moby/libnetwork/security/advisories/GHSA-gvm4-2qqg-m333
+	NOTE: https://github.com/moby/moby/issues/43382
+	NOTE: https://github.com/moby/moby/pull/45118
 CVE-2023-28839
 	RESERVED
 CVE-2023-28838 (GLPI is a free asset and IT management software package. Starting in v ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/7b88229122dfd51a1f50d1a1cfc37f911db52dc3

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/7b88229122dfd51a1f50d1a1cfc37f911db52dc3
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20230406/a36dc640/attachment.htm>


More information about the debian-security-tracker-commits mailing list