[Git][security-tracker-team/security-tracker][master] tcpdf fixed in sid
Moritz Muehlenhoff (@jmm)
jmm at debian.org
Tue Dec 31 11:19:46 GMT 2024
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker
Commits:
896a0d88 by Moritz Muehlenhoff at 2024-12-31T12:11:09+01:00
tcpdf fixed in sid
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -1393,19 +1393,19 @@ CVE-2024-53164 (In the Linux kernel, the following vulnerability has been resolv
- linux <unfixed>
NOTE: https://git.kernel.org/linus/5eb7de8cd58e73851cd37ff8d0666517d9926948 (6.13-rc2)
CVE-2024-56527 (An issue was discovered in TCPDF before 6.8.0. The Error function lack ...)
- - tcpdf <unfixed> (bug #1091689)
+ - tcpdf 6.8.0+dfsg-1 (bug #1091689)
NOTE: Fixed by: https://github.com/tecnickcom/TCPDF/commit/11778aaa2d9e30a9ae1c1ee97ff349344f0ad6e1 (6.8.0)
CVE-2024-56522 (An issue was discovered in TCPDF before 6.8.0. unserializeTCPDFtag use ...)
- - tcpdf <unfixed> (bug #1091688)
+ - tcpdf 6.8.0+dfsg-1 (bug #1091688)
NOTE: Fixed by: https://github.com/tecnickcom/TCPDF/commit/d54b97cec33f4f1a5ad81119a82085cad93cec89 (6.8.0)
CVE-2024-56521 (An issue was discovered in TCPDF before 6.8.0. If libcurl is used, CUR ...)
- - tcpdf <unfixed> (bug #1091687)
+ - tcpdf 6.8.0+dfsg-1 (bug #1091687)
NOTE: Fixed by: https://github.com/tecnickcom/TCPDF/commit/aab43ab0a824e956276141a28a24c7c0be20f554 (6.8.0)
CVE-2024-56520 (An issue was discovered in tc-lib-pdf-font before 2.6.4, as used in TC ...)
- - tcpdf <unfixed> (bug #1091686)
+ - tcpdf 6.8.0+dfsg-1 (bug #1091686)
NOTE: Fixed by: https://github.com/tecnickcom/TCPDF/commit/a0a02efe487cc39bd5223359e916dbeafb5cd6fe (6.8.0)
CVE-2024-56519 (An issue was discovered in TCPDF before 6.8.0. setSVGStyles does not s ...)
- - tcpdf <unfixed> (bug #1091685)
+ - tcpdf 6.8.0+dfsg-1 (bug #1091685)
NOTE: Fixed by: https://github.com/tecnickcom/TCPDF/commit/c9f41cbb84880bdb4fc3e0a9d287214d1ac4d7f4 (6.8.0)
CVE-2024-56510 (@marp-team/marp-core is the core for Marp, which is the ecosystem to w ...)
NOT-FOR-US: Marp core
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/896a0d884dcde6262fdc6648ae94ea6e8325d2b1
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/896a0d884dcde6262fdc6648ae94ea6e8325d2b1
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20241231/901c40c0/attachment-0001.htm>
More information about the debian-security-tracker-commits
mailing list