[Git][security-tracker-team/security-tracker][master] new ngtcp2 issue

Moritz Muehlenhoff (@jmm) jmm at debian.org
Tue Nov 26 09:09:22 GMT 2024



Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker


Commits:
c1f454a9 by Moritz Muehlenhoff at 2024-11-26T10:09:10+01:00
new ngtcp2 issue

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -164,7 +164,10 @@ CVE-2024-53258 (Autolab is a course management service that enables auto-graded
 CVE-2024-53255 (BoidCMS is a free and open-source flat file CMS for building simple we ...)
 	NOT-FOR-US: BoidCMS
 CVE-2024-52811 (The ngtcp2 project is an effort to implement IETF QUIC protocol in C.  ...)
-	TODO: check
+	- ngtcp2 <unfixed>
+	NOTE: https://github.com/ngtcp2/ngtcp2/security/advisories/GHSA-4gmv-gf46-r4g5
+	NOTE: https://github.com/ngtcp2/ngtcp2/commit/44b662bd139c23fee1703bf256c13349e2e624a1
+	NOTE: https://github.com/ngtcp2/ngtcp2/commit/e550c1a414318d0f3f01fca1a621ae0b0428ca15
 CVE-2024-52787 (An issue in the upload_documents method of libre-chat v0.0.6 allows at ...)
 	TODO: check
 CVE-2024-52529 (Cilium is a networking, observability, and security solution with an e ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/c1f454a973fd72deacbd802c960d62457d2434e9

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/c1f454a973fd72deacbd802c960d62457d2434e9
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20241126/f43e5bc8/attachment.htm>


More information about the debian-security-tracker-commits mailing list