[Git][security-tracker-team/security-tracker][master] Add CVE-2020-22217/c-ares

Salvatore Bonaccorso (@carnil) carnil at debian.org
Fri Aug 25 19:57:54 BST 2023



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
af305854 by Salvatore Bonaccorso at 2023-08-25T20:56:46+02:00
Add CVE-2020-22217/c-ares

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -219457,7 +219457,10 @@ CVE-2020-22218 (An issue was discovered in function _libssh2_packet_add in libss
 	NOTE: https://github.com/libssh2/libssh2/pull/476
 	NOTE: https://github.com/libssh2/libssh2/commit/642eec48ff3adfdb7a9e562b6d7fc865d1733f45 (libssh2-1.10.0)
 CVE-2020-22217 (Buffer overflow vulnerability in c-ares before 1_16_1 thru 1_17_0 via  ...)
-	TODO: check
+	- c-ares 1.17.1-1
+	NOTE: https://github.com/c-ares/c-ares/issues/333
+	NOTE: https://github.com/c-ares/c-ares/pull/332
+	NOTE: Fixed by: https://github.com/c-ares/c-ares/commit/1b98172b141fe874ad43e679e67506f9b2139043 (c-ares-1_17_0)
 CVE-2020-22216
 	RESERVED
 CVE-2020-22215



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/af30585459dcfeda85219b362d864efea88c4340

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/af30585459dcfeda85219b362d864efea88c4340
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20230825/c4957915/attachment.htm>


More information about the debian-security-tracker-commits mailing list