[Git][security-tracker-team/security-tracker][master] Add CVE-2023-47016/radare2

Salvatore Bonaccorso (@carnil) carnil at debian.org
Wed Nov 22 08:38:25 GMT 2023



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
a65c8108 by Salvatore Bonaccorso at 2023-11-22T09:37:51+01:00
Add CVE-2023-47016/radare2

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -49,7 +49,9 @@ CVE-2023-47393 (An access control issue in Mercedes me IOS APP v1.34.0 and below
 CVE-2023-47392 (An access control issue in Mercedes me IOS APP v1.34.0 and below allow ...)
 	NOT-FOR-US: Mercedes me IOS APP
 CVE-2023-47016 (radare2 5.8.9 has an out-of-bounds read in r_bin_object_set_items in l ...)
-	TODO: check
+	- radare2 <unfixed>
+	NOTE: https://github.com/radareorg/radare2/issues/22349
+	NOTE: https://github.com/radareorg/radare2/commit/40c9f50e127be80b9d816bce2ab2ee790831aefd
 CVE-2023-46814 (A binary hijacking vulnerability exists within the VideoLAN VLC media  ...)
 	TODO: check
 CVE-2023-41146 (Autodesk Customer Support Portal allows cases created by users under a ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/a65c81083eead36aee9fcc9ccabf8cec9f9b6c6c

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/a65c81083eead36aee9fcc9ccabf8cec9f9b6c6c
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20231122/91061038/attachment-0001.htm>


More information about the debian-security-tracker-commits mailing list