[Git][security-tracker-team/security-tracker][master] Add CVE-2023-4535/opensc

Salvatore Bonaccorso (@carnil) carnil at debian.org
Mon Nov 6 21:03:37 GMT 2023



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
9123de9c by Salvatore Bonaccorso at 2023-11-06T22:02:31+01:00
Add CVE-2023-4535/opensc

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -21,7 +21,9 @@ CVE-2023-5719 (The Crimson 3.2 Windows-based configuration tool allows users wit
 CVE-2023-4996 (Netskope was made aware of a security vulnerability in its NSClient pr ...)
 	NOT-FOR-US: Netskope
 CVE-2023-4535 (An out-of-bounds read vulnerability was found in OpenSC packages withi ...)
-	TODO: check
+	- opensc <unfixed>
+	NOTE: https://github.com/OpenSC/OpenSC/wiki/CVE-2023-4535
+	NOTE: Fixed by: https://github.com/OpenSC/OpenSC/commit/f1993dc4e0b33050b8f72a3558ee88b24c4063b2 (0.24.0-rc1)
 CVE-2023-47186 (Cross-Site Request Forgery (CSRF) vulnerability in Kadence WP Kadence  ...)
 	NOT-FOR-US: WordPress plugin
 CVE-2023-47185 (Unauth. Stored Cross-Site Scripting (XSS) vulnerability in gVectors Te ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/9123de9cbfc433e89929eeb27795d1877dbe9851

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/9123de9cbfc433e89929eeb27795d1877dbe9851
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20231106/099f47d4/attachment.htm>


More information about the debian-security-tracker-commits mailing list