[Git][security-tracker-team/security-tracker][master] Add CVE-2023-36660/nettle

Salvatore Bonaccorso (@carnil) carnil at debian.org
Mon Jun 26 09:54:19 BST 2023



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
add5dd61 by Salvatore Bonaccorso at 2023-06-26T10:54:05+02:00
Add CVE-2023-36660/nettle

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -12,7 +12,9 @@ CVE-2023-36663 (it-novum openITCOCKPIT (aka open IT COCKPIT) 4.6.4 before 4.6.5
 CVE-2023-36662 (The TechTime User Management components for Atlassian products allow s ...)
 	TODO: check
 CVE-2023-36660 (The OCB feature in libnettle in Nettle 3.9 before 3.9.1 allows memory  ...)
-	TODO: check
+	- nettle 3.9.1-1
+	NOTE: https://bugzilla.suse.com/show_bug.cgi?id=1212112
+	NOTE: https://git.lysator.liu.se/nettle/nettle/-/commit/867a4548b95705291a3afdd66d76e7f17ba2618f (nettle_3.9.1_release_20230601)
 CVE-2023-3396 (A vulnerability was found in Campcodes Retro Cellphone Online Store 1. ...)
 	NOT-FOR-US: Campcodes Retro Cellphone Online Store
 CVE-2023-36632 (The legacy email.utils.parseaddr function in Python through 3.11.4 all ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/add5dd619ffa069a17f2409af33fa7b41a2ac95d

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/add5dd619ffa069a17f2409af33fa7b41a2ac95d
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20230626/5848e75f/attachment.htm>


More information about the debian-security-tracker-commits mailing list