[Git][security-tracker-team/security-tracker][master] arm-trusted-firmware fixed in sid

Moritz Muehlenhoff (@jmm) jmm at debian.org
Mon Dec 4 08:52:42 GMT 2023



Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker


Commits:
65cd757e by Moritz Muehlenhoff at 2023-12-04T09:52:18+01:00
arm-trusted-firmware fixed in sid

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -59247,10 +59247,14 @@ CVE-2022-47632 (Razer Synapse before 3.7.0830.081906 allows privilege escalation
 CVE-2022-47631 (Razer Synapse through 3.7.1209.121307 allows privilege escalation due  ...)
 	NOT-FOR-US: Razer
 CVE-2022-47630 (Trusted Firmware-A through 2.8 has an out-of-bounds read in the X.509  ...)
-	- arm-trusted-firmware <unfixed> (unimportant)
+	- arm-trusted-firmware 2.9.0+dfsg-3 (unimportant)
 	NOTE: https://www.openwall.com/lists/oss-security/2023/01/16/8
 	NOTE: Debian ships an almost unpatched copy, so is not affected by itself
 	NOTE: Still tracking for the purpose of potential downstream providers
+	NOTE: https://github.com/ARM-software/arm-trusted-firmware/commit/fd37982a19a4a291 (v2.9-rc0)
+	NOTE: https://github.com/ARM-software/arm-trusted-firmware/commit/72460f50e2437a85 (v2.9-rc0)
+	NOTE: https://github.com/ARM-software/arm-trusted-firmware/commit/f5c51855d36e399e (v2.9-rc0)
+	NOTE: https://github.com/ARM-software/arm-trusted-firmware/commit/abb8f936fd0ad085 (v2.9-rc0)
 CVE-2022-47628
 	RESERVED
 CVE-2022-47627



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/65cd757eb1df5f1ff8f7418815c0d8e56c9fcc1c

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/65cd757eb1df5f1ff8f7418815c0d8e56c9fcc1c
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20231204/e5861bf3/attachment.htm>


More information about the debian-security-tracker-commits mailing list