[Git][security-tracker-team/security-tracker][master] Add CVE-2023-46361/jbig2dec

Salvatore Bonaccorso (@carnil) carnil at debian.org
Tue Oct 31 09:31:15 GMT 2023



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
f3b44d9f by Salvatore Bonaccorso at 2023-10-31T10:26:51+01:00
Add CVE-2023-46361/jbig2dec

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -21,7 +21,9 @@ CVE-2023-46478 (An issue in minCal v.1.0.0 allows a remote attacker to execute a
 CVE-2023-46451 (Best Courier Management System v1.0 is vulnerable to Cross Site Script ...)
 	NOT-FOR-US: Best Courier Management System
 CVE-2023-46361 (Artifex Software jbig2dec v0.20 was discovered to contain a SEGV vulne ...)
-	TODO: check
+	- jbig2dec <unfixed>
+	NOTE: https://github.com/Frank-Z7/z-vulnerabilitys/blob/main/jbig2dec-SEGV/jbig2dec-SEGV.md
+	TODO: check upstream status, potentially not reported
 CVE-2023-46356 (In the module "CSV Feeds PRO" (csvfeeds) before 2.6.1 from Bl Modules  ...)
 	NOT-FOR-US: PrestaShop module
 CVE-2023-46210 (Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in WebC ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/f3b44d9f21f314a930cecd05724de66adc11b3a8

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/f3b44d9f21f314a930cecd05724de66adc11b3a8
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20231031/79ae577a/attachment.htm>


More information about the debian-security-tracker-commits mailing list