[Git][security-tracker-team/security-tracker][master] Correct tracking for CVE-2023-36660/nettle

Salvatore Bonaccorso (@carnil) carnil at debian.org
Mon Jun 26 20:25:04 BST 2023



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
316f9243 by Salvatore Bonaccorso at 2023-06-26T21:24:05+02:00
Correct tracking for CVE-2023-36660/nettle

I did wrongly marked as it already fixed in unstable, but the upload did
land in experimental, and we still need a fix for unstable and trixie.

Fixes: add5dd619ffa ("Add CVE-2023-36660/nettle")

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -14,7 +14,8 @@ CVE-2023-36663 (it-novum openITCOCKPIT (aka open IT COCKPIT) 4.6.4 before 4.6.5
 CVE-2023-36662 (The TechTime User Management components for Atlassian products allow s ...)
 	NOT-FOR-US: Atlassian
 CVE-2023-36660 (The OCB feature in libnettle in Nettle 3.9 before 3.9.1 allows memory  ...)
-	- nettle 3.9.1-1
+	[experimental] - nettle 3.9.1-1
+	- nettle <unfixed>
 	[bookworm] - nettle <not-affected> (Vulnerable code not present)
 	[bullseye] - nettle <not-affected> (Vulnerable code not present)
 	[buster] - nettle <not-affected> (Vulnerable code not present)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/316f9243a6bf4f6cb4737ec3cc2857be9e10bf90

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/316f9243a6bf4f6cb4737ec3cc2857be9e10bf90
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20230626/3f5ec736/attachment.htm>


More information about the debian-security-tracker-commits mailing list