[Git][security-tracker-team/security-tracker][master] Add ZDI references for linux issues
Salvatore Bonaccorso (@carnil)
carnil at debian.org
Thu Jul 6 16:17:31 BST 2023
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits:
d5770f01 by Salvatore Bonaccorso at 2023-07-06T17:16:56+02:00
Add ZDI references for linux issues
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -3,30 +3,35 @@ CVE-2023-32258
[bookworm] - linux 6.1.37-1
[bullseye] - linux <not-affected> (Vulnerable code not present)
[buster] - linux <not-affected> (Vulnerable code not present)
+ NOTE: https://www.zerodayinitiative.com/advisories/ZDI-CAN-20796/
NOTE: https://git.kernel.org/linus/abcc506a9a71976a8b4c9bf3ee6efd13229c1e19 (6.4-rc1)
CVE-2023-32257
- linux 6.3.7-1
[bookworm] - linux 6.1.37-1
[bullseye] - linux <not-affected> (Vulnerable code not present)
[buster] - linux <not-affected> (Vulnerable code not present)
+ NOTE: https://www.zerodayinitiative.com/advisories/ZDI-CAN-20596/
NOTE: https://git.kernel.org/linus/f5c779b7ddbda30866cf2a27c63e34158f858c73 (6.4-rc1)
CVE-2023-32252
- linux 6.3.7-1
[bookworm] - linux 6.1.37-1
[bullseye] - linux <not-affected> (Vulnerable code not present)
[buster] - linux <not-affected> (Vulnerable code not present)
+ NOTE: https://www.zerodayinitiative.com/advisories/ZDI-CAN-20590/
NOTE: https://git.kernel.org/linus/f5c779b7ddbda30866cf2a27c63e34158f858c73 (6.4-rc1)
CVE-2023-32248 [ksmbd: fix NULL pointer dereference in smb2_get_info_filesystem()]
- linux 6.3.7-1
[bookworm] - linux 6.1.37-1
[bullseye] - linux <not-affected> (Vulnerable code not present)
[buster] - linux <not-affected> (Vulnerable code not present)
+ NOTE: https://www.zerodayinitiative.com/advisories/ZDI-CAN-20479/
NOTE: https://git.kernel.org/linus/3ac00a2ab69b34189942afa9e862d5170cdcb018 (6.4-rc1)
CVE-2023-32247 [ksmbd: destroy expired sessions]
- linux 6.3.7-1
[bookworm] - linux 6.1.37-1
[bullseye] - linux <not-affected> (Vulnerable code not present)
[buster] - linux <not-affected> (Vulnerable code not present)
+ NOTE: https://www.zerodayinitiative.com/advisories/ZDI-CAN-20478/
NOTE: https://git.kernel.org/linus/ea174a91893956450510945a0c5d1a10b5323656 (6.4-rc1)
CVE-2023-3521 (Cross-site Scripting (XSS) - Reflected in GitHub repository fossbillin ...)
NOT-FOR-US: fossbilling
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/d5770f018923873388764d7148a67200fa3834b0
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/d5770f018923873388764d7148a67200fa3834b0
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20230706/d9e6d287/attachment.htm>
More information about the debian-security-tracker-commits
mailing list