[Git][security-tracker-team/security-tracker][master] Add CVE-2023-36664/ghostscript
Salvatore Bonaccorso (@carnil)
carnil at debian.org
Mon Jun 26 09:47:25 BST 2023
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits:
18014cff by Salvatore Bonaccorso at 2023-06-26T10:46:15+02:00
Add CVE-2023-36664/ghostscript
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -3,7 +3,10 @@ CVE-2023-36675 (An issue was discovered in MediaWiki before 1.35.11, 1.36.x thro
CVE-2023-36666 (INEX IXP-Manager before 6.3.1 allows XSS. list-preamble.foil.php, page ...)
TODO: check
CVE-2023-36664 (Artifex Ghostscript through 10.01.2 mishandles permission validation f ...)
- TODO: check
+ - ghostscript <unfixed>
+ NOTE: https://bugs.ghostscript.com/show_bug.cgi?id=706761
+ NOTE: https://git.ghostscript.com/?p=ghostpdl.git;a=commit;h=505eab7782b429017eb434b2b95120855f2b0e3c
+ NOTE: https://git.ghostscript.com/?p=ghostpdl.git;a=commit;h=0974e4f2ac0005d3731e0b5c13ebc7e965540f4d
CVE-2023-36663 (it-novum openITCOCKPIT (aka open IT COCKPIT) 4.6.4 before 4.6.5 allows ...)
TODO: check
CVE-2023-36662 (The TechTime User Management components for Atlassian products allow s ...)
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/18014cff1101f790a707234ed9ee19697e820470
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/18014cff1101f790a707234ed9ee19697e820470
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20230626/8ee88fb7/attachment.htm>
More information about the debian-security-tracker-commits
mailing list