[Git][security-tracker-team/security-tracker][master] mbedtls n/a

Moritz Muehlenhoff (@jmm) jmm at debian.org
Wed May 29 13:40:57 BST 2024



Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker


Commits:
338cc281 by Moritz Muehlenhoff at 2024-05-29T14:40:18+02:00
mbedtls n/a

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -21447,8 +21447,8 @@ CVE-2024-30337 (Foxit PDF Reader AcroForm Use-After-Free Remote Code Execution V
 CVE-2024-30336 (Foxit PDF Reader AcroForm Use-After-Free Remote Code Execution Vulnera ...)
 	NOT-FOR-US: Foxit PDF Reader
 CVE-2024-30166 (In Mbed TLS 3.3.0 through 3.5.2 before 3.6.0, a malicious client can c ...)
-	- mbedtls <undetermined>
-	TODO: check, missing details
+	- mbedtls <not-affected> (2.x not affected)
+	NOTE: https://github.com/Mbed-TLS/mbedtls/commit/a5c5c58107645c8d2ee3f2d59ef6924a66d4fb74 (mbedtls-3.6.0)
 CVE-2024-2879 (The LayerSlider plugin for WordPress is vulnerable to SQL Injection vi ...)
 	NOT-FOR-US: WordPress plugin
 CVE-2024-2322 (The WooCommerce Cart Abandonment Recovery WordPress plugin before 1.2. ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/338cc2814063ed242f5400122a3d1d57d35cfbd0

-- 
This project does not include diff previews in email notifications.
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/338cc2814063ed242f5400122a3d1d57d35cfbd0
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20240529/5474271c/attachment.htm>


More information about the debian-security-tracker-commits mailing list