[Git][security-tracker-team/security-tracker][master] Add CVE-2022-25147/apr

Salvatore Bonaccorso (@carnil) carnil at debian.org
Tue Jan 31 21:18:39 GMT 2023



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
57882a37 by Salvatore Bonaccorso at 2023-01-31T22:10:15+01:00
Add CVE-2022-25147/apr

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -76433,7 +76433,8 @@ CVE-2022-0611 (Improper Privilege Management in Packagist snipe/snipe-it prior t
 CVE-2019-25057 (In Corda before 4.1, the meaning of serialized data can be modified vi ...)
 	NOT-FOR-US: Corda
 CVE-2022-25147 (Integer Overflow or Wraparound vulnerability in apr_base64 functions o ...)
-	TODO: check
+	- apr <unfixed>
+	NOTE: https://lists.apache.org/thread/np5gjqlohc4f62lr09vrn61vl44cylh8
 CVE-2022-0610 (Inappropriate implementation in Gamepad API in Google Chrome prior to  ...)
 	{DSA-5079-1}
 	- chromium 98.0.4758.102-1



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/57882a3701dff62ec63be115913363f0ef7b243b

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/57882a3701dff62ec63be115913363f0ef7b243b
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20230131/1b7d78ca/attachment.htm>


More information about the debian-security-tracker-commits mailing list