[Git][security-tracker-team/security-tracker][master] "new" frr issue

Moritz Muehlenhoff (@jmm) jmm at debian.org
Tue Sep 15 12:03:23 BST 2026



Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker


Commits:
b71ad3d6 by Moritz Muehlenhoff at 2026-09-15T11:47:25+02:00
"new" frr issue

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -493300,7 +493300,9 @@ CVE-2022-3500 (A vulnerability was found in keylime. This security issue happens
 CVE-2022-42918
 	RESERVED
 CVE-2022-42917 (In FRRouting FRR before 8.5, the service user (usually frr) can escala ...)
-	TODO: check
+	- frr 8.5.2-1
+	NOTE: https://bugzilla.suse.com/show_bug.cgi?id=1204124
+	NOTE: https://github.com/FRRouting/frr/commit/972cdc560e339d70c0ee5fb70ec636ab78f00bca (frr-8.4-rc)
 CVE-2022-42916 (In curl before 7.86.0, the HSTS check could be bypassed to trick it in ...)
 	- curl 7.86.0-1
 	[bullseye] - curl <ignored> (curl is not built with HSTS support)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/b71ad3d67882e043d0aaef1aab5abeebb9ae9d10

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/b71ad3d67882e043d0aaef1aab5abeebb9ae9d10
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260915/0a0f1966/attachment.htm>


More information about the debian-security-tracker-commits mailing list