[Git][security-tracker-team/security-tracker][master] fix entry for labstack echo

Moritz Muehlenhoff (@jmm) jmm at debian.org
Mon Aug 28 09:07:31 BST 2023



Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker


Commits:
73ad5612 by Moritz Muehlenhoff at 2023-08-28T10:07:06+02:00
fix entry for labstack echo

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -68784,7 +68784,12 @@ CVE-2022-40085
 CVE-2022-40084 (OpenCRX before v5.2.2 was discovered to be vulnerable to password enum ...)
 	NOT-FOR-US: OpenCRX
 CVE-2022-40083 (Labstack Echo v4.8.0 was discovered to contain an open redirect vulner ...)
-	NOT-FOR-US: Labstack Echo
+	- golang-github-labstack-echo 4.11.1-1
+	[bookworm] - golang-github-labstack-echo <no-dsa> (Minor issue)
+	- golang-github-labstack-echo.v2 <not-affected> (Vulnerable code not present)
+	- golang-github-labstack-echo.v3 <not-affected> (Vulnerable code not present)
+	NOTE: https://github.com/labstack/echo/commit/0ac4d74402391912ff6da733bb09fd4c3980b4e1 (v4.9.0)
+	NOTE: https://github.com/labstack/echo/issues/2259
 CVE-2022-40082 (Hertz v0.3.0 ws discovered to contain a path traversal vulnerability v ...)
 	NOT-FOR-US: Hertz
 CVE-2022-40081



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/73ad5612d094b313a88ae96a586e784f995efd62

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/73ad5612d094b313a88ae96a586e784f995efd62
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20230828/bc946264/attachment.htm>


More information about the debian-security-tracker-commits mailing list