[Git][security-tracker-team/security-tracker][master] Remove todo entry for CVE-2022-42920

Salvatore Bonaccorso (@carnil) carnil at debian.org
Mon Mar 13 18:08:00 GMT 2023



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
2de74675 by Salvatore Bonaccorso at 2023-03-13T19:07:34+01:00
Remove todo entry for  CVE-2022-42920

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -36369,7 +36369,6 @@ CVE-2022-42920 (Apache Commons BCEL has a number of APIs that would normally onl
 	NOTE: https://github.com/apache/commons-bcel/commit/f3267cbcc900f80851d561bdd16b239d936947f5
 	NOTE: Duplicate of CVE-2022-34169. But CVE-2022-34169 was assigned for Apache Xalan Java XSLT library,
 	NOTE: whereeas CVE-2022-42920 is associated with bcel itself.
-	TODO: check with the assigning CNAs which one to retain if confirmed to be handled as duplicate and move CVE-2022-34169 to Apache Xalan Java XSLT use of BCEL only.
 CVE-2022-3517 (A vulnerability was found in the minimatch package. This flaw allows a ...)
 	{DLA-3271-1}
 	- node-minimatch 3.0.5+~3.0.5-1



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/2de74675ce16b5647889b81239ea2d8a21fe99f6

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/2de74675ce16b5647889b81239ea2d8a21fe99f6
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20230313/f81d11b6/attachment.htm>


More information about the debian-security-tracker-commits mailing list