[Git][security-tracker-team/security-tracker][master] Re-associate CVE-2023-36177 with snapcast

Salvatore Bonaccorso (@carnil) carnil at debian.org
Fri Jan 17 22:41:58 GMT 2025



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
b8e14aa3 by Salvatore Bonaccorso at 2025-01-17T23:41:20+01:00
Re-associate CVE-2023-36177 with snapcast

Thanks: Felix Geyer

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -101797,7 +101797,9 @@ CVE-2023-38625 (A post-authenticated server-side request forgery (SSRF) vulnerab
 CVE-2023-38624 (A post-authenticated server-side request forgery (SSRF) vulnerability  ...)
 	NOT-FOR-US: Trend Micro
 CVE-2023-36177 (An issue was discovered in badaix Snapcast version 0.27.0, allows remo ...)
-	NOT-FOR-US: badaix Snapcast
+	- snapcast <unfixed>
+	NOTE: Introduced with: https://github.com/badaix/snapcast/commit/b26d8929505a30bb6177bd1b905f13eace1530dc (v0.16.0)
+	NOTE: Fixed by: https://github.com/badaix/snapcast/commit/9e6009cad0ef6e2e88f64a1b2504eb4749af287f (v0.30.0)
 CVE-2023-35837 (An issue was discovered in SolaX Pocket WiFi 3 through 3.001.02. Authe ...)
 	NOT-FOR-US: SolaX Pocket WiFi
 CVE-2023-35836 (An issue was discovered in SolaX Pocket WiFi 3 through 3.001.02. An at ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/b8e14aa34acb66d51f15c6069b9ec354f7b92774

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/b8e14aa34acb66d51f15c6069b9ec354f7b92774
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20250117/bfb3b227/attachment.htm>


More information about the debian-security-tracker-commits mailing list