[Git][security-tracker-team/security-tracker][master] yasm non issue

Moritz Muehlenhoff (@jmm) jmm at debian.org
Thu Jul 27 11:48:17 BST 2023



Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker


Commits:
5616eb04 by Moritz Muehlenhoff at 2023-07-27T12:47:46+02:00
yasm non issue

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -53,7 +53,10 @@ CVE-2023-38136 (The issue was addressed with improved memory handling. This issu
 CVE-2023-38133 (The issue was addressed with improved checks. This issue is fixed in i ...)
 	NOT-FOR-US: Apple
 CVE-2023-37732 (Yasm v1.3.0.78 was found prone to NULL Pointer Dereference in /libyasm ...)
-	TODO: check
+	- yasm <unfixed> (unimportant)
+	NOTE: https://github.com/yasm/yasm/issues/233
+	NOTE: https://github.com/yasm/yasm/commit/2cd3bb50e256f5ed5f611ac611d25fe673f2cec3
+	NOTE: Crash in CLI tool, no security impact
 CVE-2023-37692 (An arbitrary file upload vulnerability in October CMS v3.4.4 allows at ...)
 	NOT-FOR-US: October CMS
 CVE-2023-36862 (A downgrade issue affecting Intel-based Mac computers was addressed wi ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/5616eb041c24eaf3728b7a0a50f0b45b64d360e2

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/5616eb041c24eaf3728b7a0a50f0b45b64d360e2
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20230727/8325d99e/attachment.htm>


More information about the debian-security-tracker-commits mailing list