[Git][security-tracker-team/security-tracker][master] bullseye triage

Moritz Muehlenhoff (@jmm) jmm at debian.org
Thu May 18 16:51:50 BST 2023



Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker


Commits:
dc5f382e by Moritz Muehlenhoff at 2023-05-18T17:51:15+02:00
bullseye triage

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -337,43 +337,67 @@ CVE-2023-31620 (An issue in the dv_compare component of openlink virtuoso-openso
 	NOTE: https://github.com/openlink/virtuoso-opensource/commit/a4997ed2499c4de8c95e2de9e2a07b60384fbbec
 CVE-2023-31619 (An issue in the sch_name_to_object component of openlink virtuoso-open ...)
 	- virtuoso-opensource <unfixed>
+	[bullseye] - virtuoso-opensource <no-dsa> (Minor issue)
 	NOTE: https://github.com/openlink/virtuoso-opensource/issues/1133
+	NOTE: https://github.com/openlink/virtuoso-opensource/commit/2ed10333e6e973c2b3e1e60ba854ef0dd12afe07
 CVE-2023-31618 (An issue in the sqlc_union_dt_wrap component of openlink virtuoso-open ...)
 	- virtuoso-opensource <unfixed>
+	[bullseye] - virtuoso-opensource <no-dsa> (Minor issue)
 	NOTE: https://github.com/openlink/virtuoso-opensource/issues/1136
+	NOTE: https://github.com/openlink/virtuoso-opensource/commit/030e47a29976709a50603e3f34e82278e5f462df
 CVE-2023-31617 (An issue in the dk_set_delete component of openlink virtuoso-opensourc ...)
 	- virtuoso-opensource <unfixed>
+	[bullseye] - virtuoso-opensource <no-dsa> (Minor issue)
 	NOTE: https://github.com/openlink/virtuoso-opensource/issues/1127
+	NOTE: https://github.com/openlink/virtuoso-opensource/commit/2b64ad928ef5f75fc93091677a78abfbd17ea07f
 CVE-2023-31616 (An issue in the bif_mod component of openlink virtuoso-opensource v7.2 ...)
 	- virtuoso-opensource <unfixed>
+	[bullseye] - virtuoso-opensource <no-dsa> (Minor issue)
 	NOTE: https://github.com/openlink/virtuoso-opensource/issues/1122
+	NOTE: https://github.com/openlink/virtuoso-opensource/commit/25fff0eaa85898004bb14909e9f29d16b2918792
 CVE-2023-31615 (An issue in the chash_array component of openlink virtuoso-opensource  ...)
 	- virtuoso-opensource <unfixed>
+	[bullseye] - virtuoso-opensource <no-dsa> (Minor issue)
 	NOTE: https://github.com/openlink/virtuoso-opensource/issues/1124
+	NOTE: https://github.com/openlink/virtuoso-opensource/commit/d02925b18e3ad0244ae7c52acf92bfa686738eb2
 CVE-2023-31614 (An issue in the mp_box_deserialize_string function in openlink virtuos ...)
 	- virtuoso-opensource <unfixed>
+	[bullseye] - virtuoso-opensource <no-dsa> (Minor issue)
 	NOTE: https://github.com/openlink/virtuoso-opensource/issues/1117
+	NOTE: https://github.com/openlink/virtuoso-opensource/commit/7c488ae70803b208a94bf12fee792195caddbf7d
 CVE-2023-31613 (An issue in the __nss_database_lookup component of openlink virtuoso-o ...)
 	- virtuoso-opensource <unfixed>
+	[bullseye] - virtuoso-opensource <no-dsa> (Minor issue)
 	NOTE: https://github.com/openlink/virtuoso-opensource/issues/1121
+	NOTE: https://github.com/openlink/virtuoso-opensource/commit/171718c844530864cb375213c8b9cbc8ba079efc
 CVE-2023-31612 (An issue in the dfe_qexp_list component of openlink virtuoso-opensourc ...)
 	- virtuoso-opensource <unfixed>
+	[bullseye] - virtuoso-opensource <no-dsa> (Minor issue)
 	NOTE: https://github.com/openlink/virtuoso-opensource/issues/1125
 CVE-2023-31611 (An issue in the __libc_longjmp component of openlink virtuoso-opensour ...)
 	- virtuoso-opensource <unfixed>
+	[bullseye] - virtuoso-opensource <no-dsa> (Minor issue)
 	NOTE: https://github.com/openlink/virtuoso-opensource/issues/1119
+	NOTE: https://github.com/openlink/virtuoso-opensource/commit/db0b768dfbb66e306504d0f7951c4ae4932edd74
 CVE-2023-31610 (An issue in the _IO_default_xsputn component of openlink virtuoso-open ...)
 	- virtuoso-opensource <unfixed>
+	[bullseye] - virtuoso-opensource <no-dsa> (Minor issue)
 	NOTE: https://github.com/openlink/virtuoso-opensource/issues/1118
+	NOTE: https://github.com/openlink/virtuoso-opensource/commit/2ed10333e6e973c2b3e1e60ba854ef0dd12afe07
 CVE-2023-31609 (An issue in the dfe_unit_col_loci component of openlink virtuoso-opens ...)
 	- virtuoso-opensource <unfixed>
+	[bullseye] - virtuoso-opensource <no-dsa> (Minor issue)
 	NOTE: https://github.com/openlink/virtuoso-opensource/issues/1126
 CVE-2023-31608 (An issue in the artm_div_int component of openlink virtuoso-opensource ...)
 	- virtuoso-opensource <unfixed>
+	[bullseye] - virtuoso-opensource <no-dsa> (Minor issue)
 	NOTE: https://github.com/openlink/virtuoso-opensource/issues/1123
+	NOTE: https://github.com/openlink/virtuoso-opensource/commit/9c5bdeb73b00b5ae88db0be036d429d779126094
 CVE-2023-31607 (An issue in the __libc_malloc component of openlink virtuoso-opensourc ...)
 	- virtuoso-opensource <unfixed>
+	[bullseye] - virtuoso-opensource <no-dsa> (Minor issue)
 	NOTE: https://github.com/openlink/virtuoso-opensource/issues/1120
+	NOTE: https://github.com/openlink/virtuoso-opensource/commit/ea8b2c975c6c96f36e34014d6c71a73761198ebe
 CVE-2023-31409 (Uncontrolled Resource Consumption in SICK FTMg AIR FLOW SENSOR with Pa ...)
 	NOT-FOR-US: SICK
 CVE-2023-31408 (Cleartext Storage of Sensitive Information in SICK FTMg AIR FLOW SENSO ...)
@@ -152143,6 +152167,7 @@ CVE-2021-31240 (An issue found in libming v.0.4.8 allows a local attacker to exe
 	NOTE: https://github.com/libming/libming/issues/218
 CVE-2021-31239 (An issue found in SQLite SQLite3 v.3.35.4 that allows a remote attacke ...)
 	- sqlite3 3.36.0-2
+	[bullseye] - sqlite3 <no-dsa> (Minor issue)
 	- sqlite <removed>
 	NOTE: https://www.sqlite.org/forum/forumpost/d9fce1a89b
 	NOTE: Fixed by: https://github.com/sqlite/sqlite/commit/6536c4f18e3dd37084c902f965631ff28248d8c7 (version-3.36.0)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/dc5f382eb38577c0dac8562258adb28944a86bf3

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/dc5f382eb38577c0dac8562258adb28944a86bf3
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20230518/c2b4ce94/attachment-0001.htm>


More information about the debian-security-tracker-commits mailing list