[Git][security-tracker-team/security-tracker][master] Add additional references for CVE-2023-49606/tinyproxy

Salvatore Bonaccorso (@carnil) carnil at debian.org
Mon May 6 21:52:20 BST 2024



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
df69e904 by Salvatore Bonaccorso at 2024-05-06T22:51:33+02:00
Add additional references for CVE-2023-49606/tinyproxy

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -2675,6 +2675,8 @@ CVE-2023-7241 (Privilege Escalationin WRSA.EXE in Webroot Antivirus 8.0.1X- 9.0.
 CVE-2023-49606 (A use-after-free vulnerability exists in the HTTP Connection Headers p ...)
 	- tinyproxy <unfixed> (bug #1070395)
 	NOTE: https://talosintelligence.com/vulnerability_reports/TALOS-2023-1889
+	NOTE: https://github.com/tinyproxy/tinyproxy/issues/533
+	NOTE: https://github.com/tinyproxy/tinyproxy/commit/12a8484265f7b00591293da492bb3c9987001956
 CVE-2023-47212 (A heap-based buffer overflow vulnerability exists in the comment funct ...)
 	- libstb <unfixed> (bug #1070394)
 	NOTE: https://talosintelligence.com/vulnerability_reports/TALOS-2023-1846



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/df69e904249f14ad27b2462d3f5adca0420f8ca4

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/df69e904249f14ad27b2462d3f5adca0420f8ca4
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20240506/80b35df2/attachment.htm>


More information about the debian-security-tracker-commits mailing list