[Git][security-tracker-team/security-tracker][master] Reference followup fixes for CVE-2024-50306 in repsective branches

Salvatore Bonaccorso (@carnil) carnil at debian.org
Tue Dec 3 19:26:13 GMT 2024



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
3899e299 by Salvatore Bonaccorso at 2024-12-03T20:25:19+01:00
Reference followup fixes for CVE-2024-50306 in repsective branches

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -5421,9 +5421,11 @@ CVE-2024-50306 (Unchecked return value can allow Apache Traffic Server to retain
 	- trafficserver <unfixed> (bug #1087531)
 	NOTE: https://www.openwall.com/lists/oss-security/2024/11/13/1
 	NOTE: https://github.com/apache/trafficserver/pull/11855
-	NOTE: https://github.com/apache/trafficserver/commit/27f504883547502b1f5e4e389edd7f26e3ab246f (9.2.6-rc0)
-	NOTE: https://github.com/apache/trafficserver/commit/ae638096e259121d92d46a9f57026a5ff5bc328b (master)
+	NOTE: Fixed by: https://github.com/apache/trafficserver/commit/27f504883547502b1f5e4e389edd7f26e3ab246f (9.2.6-rc0)
+	NOTE: Fixed by: https://github.com/apache/trafficserver/commit/ae638096e259121d92d46a9f57026a5ff5bc328b (master)
 	NOTE: Complemented by: https://github.com/apache/trafficserver/pull/11872
+	NOTE: Followup: https://github.com/apache/trafficserver/commit/a0d49ddb44ea5e295c85d7d88a13e4978d6bc84b (9.2.7-rc0)
+	NOTE: Followup: https://github.com/apache/trafficserver/commit/d4dda9b5583d19e2eee268fec59aa487d61fc079 (master)
 CVE-2024-38479 (Improper Input Validation vulnerability in Apache Traffic Server.  Thi ...)
 	- trafficserver <unfixed> (bug #1087531)
 	NOTE: https://www.openwall.com/lists/oss-security/2024/11/13/1



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/3899e29915913a82abdf5bf51a0941a6cae8654e

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/3899e29915913a82abdf5bf51a0941a6cae8654e
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20241203/08318f3c/attachment.htm>


More information about the debian-security-tracker-commits mailing list