[Git][security-tracker-team/security-tracker][master] Reference additional hardening for CVE-2024-30172
Salvatore Bonaccorso (@carnil)
carnil at debian.org
Sun Nov 10 05:58:49 GMT 2024
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits:
29125e17 by Salvatore Bonaccorso at 2024-11-10T06:57:56+01:00
Reference additional hardening for CVE-2024-30172
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -51099,7 +51099,8 @@ CVE-2024-30172 (An issue was discovered in Bouncy Castle Java Cryptography APIs
[bullseye] - bouncycastle <no-dsa> (Minor issue)
[buster] - bouncycastle <postponed> (Minor issue)
NOTE: https://github.com/bcgit/bc-java/issues/1599
- NOTE: https://github.com/bcgit/bc-java/commit/9c165791b68a204678b48ec11e4e579754c2ea49 (r1rv78v1)
+ NOTE: Fixed by: https://github.com/bcgit/bc-java/commit/9c165791b68a204678b48ec11e4e579754c2ea49 (r1rv78v1)
+ NOTE: Addional hardening: https://github.com/bcgit/bc-java/commit/ebe1c75579170072dc59b8dee2b55ce31663178f (r1rv78v1)
NOTE: https://github.com/bcgit/bc-java/wiki/CVE%E2%80%902024%E2%80%9030172
CVE-2024-34505
NOT-FOR-US: MediaWiki extension CheckUser
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/29125e17e87b6373b0fd000bacaa4d65740b5d94
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/29125e17e87b6373b0fd000bacaa4d65740b5d94
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20241110/bfd04f8e/attachment.htm>
More information about the debian-security-tracker-commits
mailing list