[Git][security-tracker-team/security-tracker][master] Add new libde265 issues

Salvatore Bonaccorso (@carnil) carnil at debian.org
Wed Mar 1 21:15:31 GMT 2023



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
dfe7dd3c by Salvatore Bonaccorso at 2023-03-01T22:14:48+01:00
Add new libde265 issues

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -6038,7 +6038,9 @@ CVE-2023-25223
 CVE-2023-25222 (A heap-based buffer overflow vulnerability exits in GNU LibreDWG v0.12 ...)
 	TODO: check
 CVE-2023-25221 (Libde265 v1.0.10 was discovered to contain a heap-buffer-overflow vuln ...)
-	TODO: check
+	- libde265 1.0.11-1
+	NOTE: https://github.com/strukturag/libde265/issues/388
+	NOTE: https://github.com/strukturag/libde265/commit/857290982330e82d9e25d9d39527c6737021aa7d (v1.0.11)
 CVE-2023-25220
 	RESERVED
 CVE-2023-25219
@@ -7315,21 +7317,35 @@ CVE-2023-24760
 CVE-2023-24759
 	RESERVED
 CVE-2023-24758 (libde265 v1.0.10 was discovered to contain a NULL pointer dereference  ...)
-	TODO: check
+	- libde265 1.0.11-1
+	NOTE: https://github.com/strukturag/libde265/issues/383
+	NOTE: https://github.com/strukturag/libde265/commit/bfb6de155f9fb015d2904cb4ef07809f17995276 (v1.0.11)
 CVE-2023-24757 (libde265 v1.0.10 was discovered to contain a NULL pointer dereference  ...)
-	TODO: check
+	- libde265 1.0.11-1
+	NOTE: https://github.com/strukturag/libde265/issues/385
+	NOTE: https://github.com/strukturag/libde265/commit/48eb7dafe204b825b4a62948ed171a0cd3f1bda2 (v1.0.11)
 CVE-2023-24756 (libde265 v1.0.10 was discovered to contain a NULL pointer dereference  ...)
-	TODO: check
+	- libde265 1.0.11-1
+	NOTE: https://github.com/strukturag/libde265/issues/380
+	NOTE: https://github.com/strukturag/libde265/commit/48eb7dafe204b825b4a62948ed171a0cd3f1bda2 (v1.0.11)
 CVE-2023-24755 (libde265 v1.0.10 was discovered to contain a NULL pointer dereference  ...)
-	TODO: check
+	- libde265 1.0.11-1
+	NOTE: https://github.com/strukturag/libde265/issues/384
+	NOTE: https://github.com/strukturag/libde265/commit/48eb7dafe204b825b4a62948ed171a0cd3f1bda2 (v1.0.11)
 CVE-2023-24754 (libde265 v1.0.10 was discovered to contain a NULL pointer dereference  ...)
-	TODO: check
+	- libde265 1.0.11-1
+	NOTE: https://github.com/strukturag/libde265/issues/382
+	NOTE: https://github.com/strukturag/libde265/commit/bfb6de155f9fb015d2904cb4ef07809f17995276 (v1.0.11)
 CVE-2023-24753
 	RESERVED
 CVE-2023-24752 (libde265 v1.0.10 was discovered to contain a NULL pointer dereference  ...)
-	TODO: check
+	- libde265 1.0.11-1
+	NOTE: https://github.com/strukturag/libde265/issues/378
+	NOTE: https://github.com/strukturag/libde265/commit/052bacb2535cf0024042eefde58e48df2c778f7c (v1.0.11)
 CVE-2023-24751 (libde265 v1.0.10 was discovered to contain a NULL pointer dereference  ...)
-	TODO: check
+	- libde265 1.0.11-1
+	NOTE: https://github.com/strukturag/libde265/issues/379
+	NOTE: https://github.com/strukturag/libde265/commit/7ea8e3cbb010bc02fa38419e87ed2281d7933850 (v1.0.11)
 CVE-2023-24750
 	RESERVED
 CVE-2023-24749



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/dfe7dd3c185f823300ed4aaf98e10bd384c04286

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/dfe7dd3c185f823300ed4aaf98e10bd384c04286
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20230301/fc561d74/attachment.htm>


More information about the debian-security-tracker-commits mailing list