[Git][security-tracker-team/security-tracker][master] Reference upstream commits for CVE-2022-23521/git
Salvatore Bonaccorso (@carnil)
carnil at debian.org
Tue Jan 17 20:27:13 GMT 2023
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits:
7270f1ab by Salvatore Bonaccorso at 2023-01-17T21:26:17+01:00
Reference upstream commits for CVE-2022-23521/git
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -78879,6 +78879,16 @@ CVE-2022-23521
RESERVED
- git <unfixed>
NOTE: https://www.openwall.com/lists/oss-security/2023/01/17/4
+ NOTE: https://github.com/git/git/commit/eb22e7dfa23da6bd9aed9bd1dad69e1e8e167d24
+ NOTE: https://github.com/git/git/commit/8d0d48cf2157cfb914db1f53b3fe40785b86f3aa
+ NOTE: https://github.com/git/git/commit/24557209500e6ed618f04a8795a111a0c491a29c
+ NOTE: https://github.com/git/git/commit/34ace8bad02bb14ecc5b631f7e3daaa7a9bba7d9
+ NOTE: https://github.com/git/git/commit/447ac906e189535e77dcb1f4bbe3f1bc917d4c12
+ NOTE: https://github.com/git/git/commit/e1e12e97ac73ded85f7d000da1063a774b3cc14f
+ NOTE: https://github.com/git/git/commit/a60a66e409c265b2944f18bf43581c146812586d
+ NOTE: https://github.com/git/git/commit/d74b1fd54fdbc45966d12ea907dece11e072fb2b
+ NOTE: https://github.com/git/git/commit/dfa6b32b5e599d97448337ed4fc18dd50c90758f
+ NOTE: https://github.com/git/git/commit/3c50032ff5289cc45659f21949c8d09e52164579
CVE-2022-23520 (rails-html-sanitizer is responsible for sanitizing HTML fragments in R ...)
- ruby-rails-html-sanitizer <unfixed> (bug #1027153)
[buster] - ruby-rails-html-sanitizer <no-dsa> (Minor issue)
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/7270f1abc0c5d48c32e47c93af897a2ecb7ffe12
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/7270f1abc0c5d48c32e47c93af897a2ecb7ffe12
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20230117/bb74f8ac/attachment-0001.htm>
More information about the debian-security-tracker-commits
mailing list