[Git][security-tracker-team/security-tracker][master] (for LTS) CVE-2021-42383/busybox postpone with same reasoning as for stretch

Tobias Frost (@tobi) tobi at debian.org
Sun Jan 19 09:39:44 GMT 2025



Tobias Frost pushed to branch master at Debian Security Tracker / security-tracker


Commits:
16f1d2f8 by Tobias Frost at 2025-01-19T10:38:35+01:00
(for LTS) CVE-2021-42383/busybox postpone with same reasoning as for stretch

"Minor issue, requires passing arbitrary awk program, no identified
patch"

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -266091,8 +266091,8 @@ CVE-2021-42384 (A use-after-free in Busybox's awk applet leads to denial of serv
 	NOTE: https://jfrog.com/blog/unboxing-busybox-14-new-vulnerabilities-uncovered-by-claroty-and-jfrog/
 CVE-2021-42383 (A use-after-free in Busybox's awk applet leads to denial of service an ...)
 	- busybox 1:1.35.0-1 (bug #999567)
-	[bullseye] - busybox <no-dsa> (Minor issue)
-	[buster] - busybox <no-dsa> (Minor issue)
+	[bullseye] - busybox <postponed> (Minor issue, requires passing arbitrary awk program, no identified patch)
+	[buster] - busybox <postponed> (Minor issue, requires passing arbitrary awk program, no identified patch)
 	[stretch] - busybox <postponed> (Minor issue, requires passing arbitrary awk program, no identified patch)
 	NOTE: https://jfrog.com/blog/unboxing-busybox-14-new-vulnerabilities-uncovered-by-claroty-and-jfrog/
 CVE-2021-42382 (A use-after-free in Busybox's awk applet leads to denial of service an ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/16f1d2f84edae783f3aacb1173e80de9596c60a6

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/16f1d2f84edae783f3aacb1173e80de9596c60a6
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20250119/e7373eb7/attachment.htm>


More information about the debian-security-tracker-commits mailing list