[Git][security-tracker-team/security-tracker][master] Add commit reference for CVE-2024-29133

Salvatore Bonaccorso (@carnil) carnil at debian.org
Fri Mar 22 20:20:14 GMT 2024



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
fc425de5 by Salvatore Bonaccorso at 2024-03-22T21:19:28+01:00
Add commit reference for CVE-2024-29133

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -365,6 +365,7 @@ CVE-2024-29133 (Out-of-bounds Write vulnerability in Apache Commons Configuratio
 	[bookworm] - commons-configuration2 <no-dsa> (Minor issue)
 	[bullseye] - commons-configuration2 <no-dsa> (Minor issue)
 	NOTE: https://issues.apache.org/jira/browse/CONFIGURATION-841
+	NOTE: https://github.com/apache/commons-configuration/commit/43f4dab021e9acb8db390db2ae80aa0cee4f9ee4 (commons-configuration-2.10.1-RC1)
 	NOTE: https://www.openwall.com/lists/oss-security/2024/03/20/3
 CVE-2024-1394 (A memory leak flaw was found in Golang in the RSA encrypting/decryptin ...)
 	NOT-FOR-US: golang-fips



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/fc425de5746dcb260adf265c5e170f15672faa18

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/fc425de5746dcb260adf265c5e170f15672faa18
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20240322/19f205dc/attachment-0001.htm>


More information about the debian-security-tracker-commits mailing list