[Git][security-tracker-team/security-tracker][master] Add CVE-2020-22218/libssh2

Salvatore Bonaccorso (@carnil) carnil at debian.org
Fri Aug 25 19:49:24 BST 2023



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
d1084b23 by Salvatore Bonaccorso at 2023-08-25T20:48:47+02:00
Add CVE-2020-22218/libssh2

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -219453,7 +219453,9 @@ CVE-2020-22219 (Buffer Overflow vulnerability in function bitwriter_grow_ in fla
 	NOTE: https://github.com/xiph/flac/issues/215
 	NOTE: https://github.com/xiph/flac/pull/419 (1.4.0)
 CVE-2020-22218 (An issue was discovered in function _libssh2_packet_add in libssh2 1.1 ...)
-	TODO: check
+	- libssh2 1.10.0-2
+	NOTE: https://github.com/libssh2/libssh2/pull/476
+	NOTE: https://github.com/libssh2/libssh2/commit/642eec48ff3adfdb7a9e562b6d7fc865d1733f45 (libssh2-1.10.0)
 CVE-2020-22217 (Buffer overflow vulnerability in c-ares before 1_16_1 thru 1_17_0 via  ...)
 	TODO: check
 CVE-2020-22216



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/d1084b239291ae94943000a177e2317b063f769e

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/d1084b239291ae94943000a177e2317b063f769e
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20230825/16c6e169/attachment.htm>


More information about the debian-security-tracker-commits mailing list