[Git][security-tracker-team/security-tracker][master] Add CVE-2024-21633/apktool

Salvatore Bonaccorso (@carnil) carnil at debian.org
Wed Jan 3 21:16:15 GMT 2024



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
71333587 by Salvatore Bonaccorso at 2024-01-03T22:15:47+01:00
Add CVE-2024-21633/apktool

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -12,7 +12,9 @@ CVE-2024-21908 (TinyMCE versions before 5.9.0 are affected by a stored cross-sit
 CVE-2024-21907 (Newtonsoft.Json before version 13.0.1 is affected by a mishandling of  ...)
 	TODO: check
 CVE-2024-21633 (Apktool is a tool for reverse engineering Android APK files. In versio ...)
-	TODO: check
+	- apktool <unfixed>
+	NOTE: https://github.com/iBotPeaches/Apktool/security/advisories/GHSA-2hqv-2xv4-5h5w
+	NOTE: https://github.com/iBotPeaches/Apktool/commit/d348c43b24a9de350ff6e5bd610545a10c1fc712
 CVE-2024-21631 (Vapor is an HTTP web framework for Swift. Prior to version 4.90.0, Vap ...)
 	TODO: check
 CVE-2024-21622 (Craft is a content management system. This is a potential moderate imp ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/71333587065356bcaea80f56ee6b07f7f0ebbe92

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/71333587065356bcaea80f56ee6b07f7f0ebbe92
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20240103/04a81b27/attachment.htm>


More information about the debian-security-tracker-commits mailing list