[Git][security-tracker-team/security-tracker][master] Move oss-security reference for flatpak and drop entry

Salvatore Bonaccorso (@carnil) carnil at debian.org
Thu Apr 18 22:11:48 BST 2024



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
26a59189 by Salvatore Bonaccorso at 2024-04-18T23:11:15+02:00
Move oss-security reference for flatpak and drop entry

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -118,6 +118,7 @@ CVE-2024-32466 (Tolgee is an open-source localization platform. For the `/v2/pro
 	TODO: check
 CVE-2024-32462 (Flatpak is a system for building, distributing, and running sandboxed  ...)
 	- flatpak 1.14.6-1
+	NOTE: https://www.openwall.com/lists/oss-security/2024/04/18/5
 	NOTE: https://github.com/flatpak/flatpak/security/advisories/GHSA-phv6-cpc2-2fgj
 	NOTE: Fixed by: https://github.com/flatpak/flatpak/commit/bbab7ed1e672356d1a78b422462b210e8e875931 (1.15.8)
 	NOTE: Fixed by: https://github.com/flatpak/flatpak/commit/b7c1a558e58aaeb1d007d29529bbb270dc4ff11e (1.14.6)
@@ -199,10 +200,6 @@ CVE-2024-XXXX [tryton zipbomb DoS]
 	[bullseye] - tryton-server <no-dsa> (Minor issue)
 	NOTE: https://discuss.tryton.org/t/security-release-for-issue-13142/7196
 	NOTE: https://foss.heptapod.net/tryton/tryton/-/issues/13142
-CVE-2024-3246
-	- flatpak <unfixed>
-	NOTE: https://www.openwall.com/lists/oss-security/2024/04/18/5
-	NOTE: https://github.com/flatpak/flatpak/security/advisories/GHSA-phv6-cpc2-2fgj
 CVE-2024-26921 (In the Linux kernel, the following vulnerability has been resolved:  i ...)
 	- linux <unfixed>
 	[bookworm] - linux 6.1.85-1



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/26a59189b118b7261a0ade37480a34527ed17d9c

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/26a59189b118b7261a0ade37480a34527ed17d9c
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20240418/9d4cced5/attachment.htm>


More information about the debian-security-tracker-commits mailing list