[Git][security-tracker-team/security-tracker][master] Add CVE-2023-47466/taglib

Salvatore Bonaccorso (@carnil) carnil at debian.org
Fri May 23 07:34:00 BST 2025



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
2e8c7bf2 by Salvatore Bonaccorso at 2025-05-23T08:33:24+02:00
Add CVE-2023-47466/taglib

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -217,7 +217,10 @@ CVE-2024-13928 (SQL injection vulnerabilities in ASPECT allow unintended access
 CVE-2024-12093 (An issue has been discovered in GitLab CE/EE affecting all versions fr ...)
 	TODO: check
 CVE-2023-47466 (TagLib before 2.0 allows a segmentation violation and application cras ...)
-	TODO: check
+	- taglib 2.0.2-1
+	NOTE: https://github.com/taglib/taglib/issues/1163
+	NOTE: https://github.com/taglib/taglib/pull/1164
+	NOTE: Fixed by: https://github.com/taglib/taglib/commit/dfa33bec0806cbb45785accb8cc6c2048a7d40cf (v2.0beta)
 CVE-2003-5004
 	REJECTED
 CVE-2025-4575 (Issue summary: Use of -addreject option with the openssl x509 applicat ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/2e8c7bf2b445ec7b092c9641aa9ad2a3304b5784

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/2e8c7bf2b445ec7b092c9641aa9ad2a3304b5784
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20250523/5bd569b0/attachment.htm>


More information about the debian-security-tracker-commits mailing list