[Git][security-tracker-team/security-tracker][master] bookworm/bullseye triage

Moritz Muehlenhoff (@jmm) jmm at debian.org
Wed Jan 10 13:57:28 GMT 2024



Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker


Commits:
1163408e by Moritz Muehlenhoff at 2024-01-10T14:56:59+01:00
bookworm/bullseye triage

- - - - -


2 changed files:

- data/CVE/list
- data/dsa-needed.txt


Changes:

=====================================
data/CVE/list
=====================================
@@ -290,7 +290,10 @@ CVE-2022-48618 (The issue was addressed with improved checks. This issue is fixe
 	TODO: check
 CVE-2023-41056 [Buffer overflow in certain payloads may lead to remote code execution]
 	- redis 5:7.0.15-1 (bug #1060316)
-	NOTE: Introduced with changes from: https://github.com/redis/redis/pull/11766
+	[bullseye] - redis <not-affected> (Vulnerable code not present)
+	[buster] - redis <not-affected> (Vulnerable code not present)
+	NOTE: Introduced with changes from: https://github.com/redis/redis/pull/11766 (which landed
+	NOTE:   in 7.2, but which also got backported to the 7.0. branch)
 	NOTE: https://github.com/redis/redis/commit/e351099e1119fb89496be578f5232c61ce300224 (7.0.15)
 CVE-2024-22125 (Under certain conditions the Microsoft Edge browser extension (SAP GUI ...)
 	NOT-FOR-US: SAP


=====================================
data/dsa-needed.txt
=====================================
@@ -24,6 +24,8 @@ frr
 --
 gpac/oldstable
 --
+gtkwave
+--
 h2o (jmm)
 --
 libreswan (jmm)
@@ -36,8 +38,11 @@ linux (carnil)
 nbconvert/oldstable
   Guilhem Moulin proposed an update ready for review
 --
-php*seclib* (seb)
-  Maintainer prepared updates
+php-phpseclib (seb)
+--
+phpseclib (seb)
+--
+php-phpseclib3/stable (seb)
 --
 php-cas/oldstable
 --



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/1163408e442801bcc293d0c93deb936912a1f9f1

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/1163408e442801bcc293d0c93deb936912a1f9f1
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20240110/0c4e4173/attachment-0001.htm>


More information about the debian-security-tracker-commits mailing list