[Git][security-tracker-team/security-tracker][master] Add CVE-2024-0217/packagekit

Salvatore Bonaccorso (@carnil) carnil at debian.org
Thu Jan 4 06:22:04 GMT 2024



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
a2200e35 by Salvatore Bonaccorso at 2024-01-04T07:21:22+01:00
Add CVE-2024-0217/packagekit

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -20,7 +20,9 @@ CVE-2024-21631 (Vapor is an HTTP web framework for Swift. Prior to version 4.90.
 CVE-2024-21622 (Craft is a content management system. This is a potential moderate imp ...)
 	NOT-FOR-US: Craft CMS
 CVE-2024-0217 (A use-after-free flaw was found in PackageKitd. In some conditions, th ...)
-	TODO: check
+	- packagekit <unfixed>
+	NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=2256624
+	TODO: check, RHBZ#2256624 claims fixed in upstream 1.2.7 but provides no references
 CVE-2024-0201 (The Product Expiry for WooCommerce plugin for WordPress is vulnerable  ...)
 	NOT-FOR-US: WordPress plugin
 CVE-2023-7068 (The WooCommerce PDF Invoices, Packing Slips, Delivery Notes and Shippi ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/a2200e355fd5f46e99542b7711554beb4721e521

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/a2200e355fd5f46e99542b7711554beb4721e521
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20240104/fa3dd4ba/attachment.htm>


More information about the debian-security-tracker-commits mailing list