[Git][security-tracker-team/security-tracker][master] Update information on CVE-2022-39269 for src:ring
Salvatore Bonaccorso (@carnil)
carnil at debian.org
Sun Aug 27 20:11:37 BST 2023
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits:
792edf9f by Salvatore Bonaccorso at 2023-08-27T21:11:10+02:00
Update information on CVE-2022-39269 for src:ring
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -70685,8 +70685,11 @@ CVE-2022-39269 (PJSIP is a free and open source multimedia communication library
- asterisk 1:20.3.0~dfsg+~cs6.13.40431413-1 (bug #1032092)
- pjproject <removed>
- ring 20230206.0~ds1-1
+ [bullseye] - ring <not-affected> (Vulnerable code introduced later)
+ [buster] - ring <not-affected> (Vulnerable code introduced later)
NOTE: https://github.com/pjsip/pjproject/security/advisories/GHSA-wx5m-cj97-4wwg
- NOTE: https://github.com/pjsip/pjproject/commit/d2acb9af4e27b5ba75d658690406cec9c274c5cc
+ NOTE: Introduced by: https://github.com/pjsip/pjproject/commit/db4f8f23b9962b4e567faa0784608174376ead8f (2.11)
+ NOTE: Fixed by: https://github.com/pjsip/pjproject/commit/d2acb9af4e27b5ba75d658690406cec9c274c5cc (2.13)
CVE-2022-39268 (### Impact In a CSRF attack, an innocent end user is tricked by an att ...)
NOT-FOR-US: orchest/orchest
CVE-2022-39267 (Bifrost is a heterogeneous middleware that synchronizes MySQL, MariaDB ...)
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/792edf9f55be0553b48419c371ee154f94193407
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/792edf9f55be0553b48419c371ee154f94193407
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20230827/26078b28/attachment-0001.htm>
More information about the debian-security-tracker-commits
mailing list