[Git][security-tracker-team/security-tracker][master] CVE-2023-38197 fixed in sid

Moritz Muehlenhoff (@jmm) jmm at debian.org
Fri Nov 8 22:13:13 GMT 2024



Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker


Commits:
a70fbbab by Moritz Muehlenhoff at 2024-11-08T23:12:45+01:00
CVE-2023-38197 fixed in sid

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -112305,7 +112305,7 @@ CVE-2023-38198 (acme.sh before 3.0.6 runs arbitrary commands from a remote serve
 	NOT-FOR-US: acme.sh
 CVE-2023-38197 (An issue was discovered in Qt before 5.15.15, 6.x before 6.2.10, and 6 ...)
 	{DLA-3805-1 DLA-3539-1}
-	- qt6-base <unfixed> (bug #1041104)
+	- qt6-base 6.6.2+dfsg-8 (bug #1041104)
 	[bookworm] - qt6-base <no-dsa> (Minor issue)
 	- qtbase-opensource-src-gles 5.15.10+dfsg-3 (bug #1041106)
 	[bookworm] - qtbase-opensource-src-gles <no-dsa> (Minor issue)
@@ -112316,6 +112316,8 @@ CVE-2023-38197 (An issue was discovered in Qt before 5.15.15, 6.x before 6.2.10,
 	- qt4-x11 <removed>
 	NOTE: https://www.qt.io/blog/security-advisory-qxmlstreamreader-1
 	NOTE: https://codereview.qt-project.org/c/qt/qtbase/+/488960
+	NOTE: https://github.com/qt/qtbase/commit/c4301be7d5f94852e1b17f2c2989d5ca807855d4 (v6.7.0-beta1)
+	NOTE: https://github.com/qt/qtbase/commit/b35f5a187d82cdb0c13ef88b506e318f3b793adc (v6.6.0-beta3)
 CVE-2023-37568 (ELECOM wireless LAN routers WRC-1167GHBK-S v1.03 and earlier, and WRC- ...)
 	NOT-FOR-US: ELECOM
 CVE-2023-37567 (Command injection vulnerability in ELECOM and LOGITEC wireless LAN rou ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/a70fbbabbfb408eb7104ec6946ecf37957979e51

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/a70fbbabbfb408eb7104ec6946ecf37957979e51
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20241108/92560ebf/attachment-0001.htm>


More information about the debian-security-tracker-commits mailing list