[Git][security-tracker-team/security-tracker][master] Add CVE-2022-46176/cargo

Salvatore Bonaccorso (@carnil) carnil at debian.org
Tue Jan 10 19:43:52 GMT 2023



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
c2f48578 by Salvatore Bonaccorso at 2023-01-10T20:43:27+01:00
Add CVE-2022-46176/cargo

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -9469,6 +9469,10 @@ CVE-2022-46177 (Discourse is an option source discussion platform. Prior to vers
 	NOT-FOR-US: Discourse
 CVE-2022-46176
 	RESERVED
+	- cargo <unfixed>
+	- rust-cargo <unfixed>
+	NOTE: https://www.openwall.com/lists/oss-security/2023/01/10/3
+	NOTE: https://github.com/rust-lang/wg-security-response/tree/main/patches/CVE-2022-46176
 CVE-2022-46175 (JSON5 is an extension to the popular JSON file format that aims to be  ...)
 	- node-json5 2.2.3+dfsg-1 (bug #1027145)
 	[bullseye] - node-json5 <no-dsa> (Minor issue)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/c2f485786dd2c088584908145c78ed4c7b789bdb

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/c2f485786dd2c088584908145c78ed4c7b789bdb
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20230110/0a365a9b/attachment.htm>


More information about the debian-security-tracker-commits mailing list