[Git][security-tracker-team/security-tracker][master] tar non issue

Moritz Muehlenhoff (@jmm) jmm at debian.org
Mon Jan 30 13:38:26 GMT 2023



Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker


Commits:
37eb5ed5 by Moritz Muehlenhoff at 2023-01-30T14:37:24+01:00
tar non issue

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -399,7 +399,10 @@ CVE-2022-4898
 CVE-2022-48304
 	RESERVED
 CVE-2022-48303 (GNU Tar through 1.34 has a one-byte out-of-bounds read that results in ...)
-	TODO: check
+	- tar <unfixed> (unimportant)
+	NOTE: Crash in CLI tool, no security impact
+	NOTE: https://savannah.gnu.org/bugs/?62387
+	NOTE: https://savannah.gnu.org/patch/?10307
 CVE-2021-46873 (WireGuard, such as WireGuard 0.5.3 on Windows, does not fully account  ...)
 	TODO: check
 CVE-2023-0571 (A vulnerability has been found in SourceCodester Canteen Management Sy ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/37eb5ed53b5b8b6a5b865c91224597170174201e

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/37eb5ed53b5b8b6a5b865c91224597170174201e
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20230130/a3d5812f/attachment-0001.htm>


More information about the debian-security-tracker-commits mailing list