[Git][security-tracker-team/security-tracker][master] mark several CVEs of opensc as postponed until fixed upstream

Thorsten Alteholz (@alteholz) alteholz at debian.org
Sun Sep 15 00:48:36 BST 2024



Thorsten Alteholz pushed to branch master at Debian Security Tracker / security-tracker


Commits:
8618fb35 by Thorsten Alteholz at 2024-09-15T01:37:08+02:00
mark several CVEs of opensc as postponed until fixed upstream

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -1697,6 +1697,7 @@ CVE-2024-44838 (RapidCMS v1.3.1 was discovered to contain a SQL injection vulner
 CVE-2024-8443 (A heap-based buffer overflow vulnerability was found in the libopensc  ...)
 	- opensc <unfixed>
 	[bookworm] - opensc <no-dsa> (Minor issue)
+	[bullseye] - opensc <postponed> (Minor issue, revisit when fixed upstream)
 	NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=2310494
 CVE-2024-8517 (SPIP before 4.3.2, 4.2.16, and  4.1.18 is vulnerable to a command inje ...)
 	- spip 4.3.2+dfsg-1
@@ -2749,26 +2750,32 @@ CVE-2024-37136 (Dell Path to PowerProtect, versions 1.1, 1.2, contains an Exposu
 CVE-2024-45620 (A vulnerability was found in the pkcs15-init tool in OpenSC. An attack ...)
 	- opensc <unfixed>
 	[bookworm] - opensc <no-dsa> (Minor issue)
+	[bullseye] - opensc <postponed> (Minor issue, revisit when fixed upstream)
 	NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=2309289
 CVE-2024-45619 (A vulnerability was found in OpenSC, OpenSC tools, PKCS#11 module, min ...)
 	- opensc <unfixed>
 	[bookworm] - opensc <no-dsa> (Minor issue)
+	[bullseye] - opensc <postponed> (Minor issue, revisit when fixed upstream)
 	NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=2309288
 CVE-2024-45618 (A vulnerability was found in pkcs15-init in OpenSC. An attacker could  ...)
 	- opensc <unfixed>
 	[bookworm] - opensc <no-dsa> (Minor issue)
+	[bullseye] - opensc <postponed> (Minor issue, revisit when fixed upstream)
 	NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=2309287
 CVE-2024-45617 (A vulnerability was found in OpenSC, OpenSC tools, PKCS#11 module, min ...)
 	- opensc <unfixed>
 	[bookworm] - opensc <no-dsa> (Minor issue)
+	[bullseye] - opensc <postponed> (Minor issue, revisit when fixed upstream)
 	NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=2309286
 CVE-2024-45616 (A vulnerability was found in OpenSC, OpenSC tools, PKCS#11 module, min ...)
 	- opensc <unfixed>
 	[bookworm] - opensc <no-dsa> (Minor issue)
+	[bullseye] - opensc <postponed> (Minor issue, revisit when fixed upstream)
 	NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=2309290
 CVE-2024-45615 (A vulnerability was found in OpenSC, OpenSC tools, PKCS#11 module, min ...)
 	- opensc <unfixed>
 	[bookworm] - opensc <no-dsa> (Minor issue)
+	[bullseye] - opensc <postponed> (Minor issue, revisit when fixed upstream)
 	NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=2309285
 CVE-2024-45310 (runc is a CLI tool for spawning and running containers according to th ...)
 	- runc <unfixed>



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/8618fb35e40c6c5ca95dc3ad75cc59f2ab434ac5

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/8618fb35e40c6c5ca95dc3ad75cc59f2ab434ac5
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20240914/bde1001f/attachment.htm>


More information about the debian-security-tracker-commits mailing list