[Git][security-tracker-team/security-tracker][master] Update status for CVE-2023-33461

Salvatore Bonaccorso (@carnil) carnil at debian.org
Mon Jun 5 16:45:14 BST 2023



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
a1aa5766 by Salvatore Bonaccorso at 2023-06-05T17:44:38+02:00
Update status for CVE-2023-33461

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -278,10 +278,9 @@ CVE-2023-33628 (H3C Magic R300 version R300-2100MV100R004 was discovered to cont
 CVE-2023-33627 (H3C Magic R300 version R300-2100MV100R004 was discovered to contain a  ...)
 	NOT-FOR-US: H3C Magic R300
 CVE-2023-33461 (iniparser v4.1 is vulnerable to NULL Pointer Dereference in function i ...)
-	- iniparser <unfixed>
-	[bookworm] - iniparser <no-dsa> (Minor issue)
-	[bullseye] - iniparser <no-dsa> (Minor issue)
+	- iniparser <unfixed> (unimportant)
 	NOTE: https://github.com/ndevilla/iniparser/issues/144
+	NOTE: Negligible security impact
 CVE-2023-30758 (Cross-site scripting vulnerability in Pleasanter 1.3.38.1 and earlier  ...)
 	NOT-FOR-US: Pleasanter
 CVE-2023-29159 (Directory traversal vulnerability in Starlette versions 0.13.5 and lat ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/a1aa5766be3babaa38e15fcc4631a1e871b4a5fd

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/a1aa5766be3babaa38e15fcc4631a1e871b4a5fd
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20230605/a7a647fa/attachment.htm>


More information about the debian-security-tracker-commits mailing list