[Git][security-tracker-team/security-tracker][master] arm-trusted-firmware fixed in sid
Moritz Muehlenhoff (@jmm)
jmm at debian.org
Mon Dec 4 08:52:42 GMT 2023
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker
Commits:
65cd757e by Moritz Muehlenhoff at 2023-12-04T09:52:18+01:00
arm-trusted-firmware fixed in sid
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -59247,10 +59247,14 @@ CVE-2022-47632 (Razer Synapse before 3.7.0830.081906 allows privilege escalation
CVE-2022-47631 (Razer Synapse through 3.7.1209.121307 allows privilege escalation due ...)
NOT-FOR-US: Razer
CVE-2022-47630 (Trusted Firmware-A through 2.8 has an out-of-bounds read in the X.509 ...)
- - arm-trusted-firmware <unfixed> (unimportant)
+ - arm-trusted-firmware 2.9.0+dfsg-3 (unimportant)
NOTE: https://www.openwall.com/lists/oss-security/2023/01/16/8
NOTE: Debian ships an almost unpatched copy, so is not affected by itself
NOTE: Still tracking for the purpose of potential downstream providers
+ NOTE: https://github.com/ARM-software/arm-trusted-firmware/commit/fd37982a19a4a291 (v2.9-rc0)
+ NOTE: https://github.com/ARM-software/arm-trusted-firmware/commit/72460f50e2437a85 (v2.9-rc0)
+ NOTE: https://github.com/ARM-software/arm-trusted-firmware/commit/f5c51855d36e399e (v2.9-rc0)
+ NOTE: https://github.com/ARM-software/arm-trusted-firmware/commit/abb8f936fd0ad085 (v2.9-rc0)
CVE-2022-47628
RESERVED
CVE-2022-47627
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/65cd757eb1df5f1ff8f7418815c0d8e56c9fcc1c
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/65cd757eb1df5f1ff8f7418815c0d8e56c9fcc1c
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20231204/e5861bf3/attachment.htm>
More information about the debian-security-tracker-commits
mailing list