[Git][security-tracker-team/security-tracker][master] Reference additional commit for CVE-2023-1370
Salvatore Bonaccorso (@carnil)
carnil at debian.org
Tue Mar 4 18:13:16 GMT 2025
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits:
0d855a1e by Salvatore Bonaccorso at 2025-03-04T19:12:43+01:00
Reference additional commit for CVE-2023-1370
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -167251,7 +167251,8 @@ CVE-2023-1370 ([Json-smart](https://netplex.github.io/json-smart/) is a performa
[bookworm] - json-smart 2.2-2+deb12u1
[bullseye] - json-smart 2.2-2+deb11u1
NOTE: https://research.jfrog.com/vulnerabilities/stack-exhaustion-in-json-smart-leads-to-denial-of-service-when-parsing-malformed-json-xray-427633/
- NOTE: https://github.com/netplex/json-smart-v2/commit/5b3205d051952d3100aa0db1535f6ba6226bd87a (2.4.9)
+ NOTE: Fixed by: https://github.com/netplex/json-smart-v2/commit/5b3205d051952d3100aa0db1535f6ba6226bd87a (2.4.9)
+ NOTE: Fixed by: https://github.com/netplex/json-smart-v2/commit/e2791ae506a57491bc856b439d706c81e45adcf8 (2.4.10)
CVE-2023-1369 (A vulnerability was found in TG Soft Vir.IT eXplorer 9.4.86.0. It has ...)
NOT-FOR-US: TG Soft Vir.IT eXplorer
CVE-2023-1368 (A vulnerability was found in XHCMS 1.0. It has been declared as critic ...)
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/0d855a1e757fa5fecd7beb3422a7a0c66229e3b9
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/0d855a1e757fa5fecd7beb3422a7a0c66229e3b9
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20250304/56171b27/attachment.htm>
More information about the debian-security-tracker-commits
mailing list