[Git][security-tracker-team/security-tracker][master] Demote CVE-2024-4316{7,8}/unbound to unimportant
Salvatore Bonaccorso (@carnil)
carnil at debian.org
Mon Oct 21 21:06:59 BST 2024
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits:
c52f3fd3 by Salvatore Bonaccorso at 2024-10-21T22:06:21+02:00
Demote CVE-2024-4316{7,8}/unbound to unimportant
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -17297,18 +17297,20 @@ CVE-2024-21302 (Summary: Microsoft was notified that an elevation of privilege v
NOT-FOR-US: Microsoft
CVE-2024-43168 (A heap-buffer-overflow flaw was found in the cfg_mark_ports function w ...)
{DLA-3903-1}
- - unbound 1.20.0-1
+ - unbound 1.20.0-1 (unimportant)
NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=2303462
NOTE: https://github.com/NLnetLabs/unbound/issues/1039
NOTE: https://github.com/NLnetLabs/unbound/pull/1040
NOTE: Fixed by: https://github.com/NLnetLabs/unbound/commit/193401e7543a1e561dd634a3eaae932fa462a2b9 (release-1.20.0rc1)
+ NOTE: Negligible security impact according to upstream
CVE-2024-43167 (A NULL pointer dereference flaw was found in the ub_ctx_set_fwd functi ...)
{DLA-3903-1}
- - unbound 1.21.1-1 (bug #1078647)
+ - unbound 1.21.1-1 (bug #1078647; unimportant)
NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=2303456
NOTE: https://github.com/NLnetLabs/unbound/issues/1072
NOTE: https://github.com/NLnetLabs/unbound/pull/1073
NOTE: Fixed by: https://github.com/NLnetLabs/unbound/commit/8e43e2574c4e02f79c562a061581cdcefe136912 (release-1.21.0rc1)
+ NOTE: Negligible security impact according to upstream
CVE-2024-7585 (A vulnerability has been found in Tenda i22 1.0.0.3(4687) and classifi ...)
NOT-FOR-US: Tenda
CVE-2024-7584 (A vulnerability, which was classified as critical, was found in Tenda ...)
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/c52f3fd35546f4d642c7f079d1ac68a636678f08
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/c52f3fd35546f4d642c7f079d1ac68a636678f08
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20241021/3ceec4fc/attachment.htm>
More information about the debian-security-tracker-commits
mailing list