diff options
author | Moritz Muehlenhoff <jmm@debian.org> | 2023-10-28 14:42:04 +0200 |
---|---|---|
committer | Moritz Muehlenhoff <jmm@debian.org> | 2023-10-28 14:43:05 +0200 |
commit | e730a4f0cf1bc421d202ffc2e99341fbd9021c98 (patch) | |
tree | 9608c620ad20b6997cfc397de762669d5da4cb36 | |
parent | 9063422bad228a191c06ecf59b664177ad6ce8b9 (diff) |
bullseye/bookworm triage
-rw-r--r-- | data/CVE/list | 8 |
1 files changed, 8 insertions, 0 deletions
diff --git a/data/CVE/list b/data/CVE/list index e4187561e6..9225f1fc45 100644 --- a/data/CVE/list +++ b/data/CVE/list @@ -104,9 +104,13 @@ CVE-2023-4967 (Denial of Service in NetScaler ADC and NetScaler Gateway when con NOT-FOR-US: Citrix CVE-2023-46853 (In Memcached before 1.6.22, an off-by-one error exists when processing ...) - memcached 1.6.22-1 + [bookworm] - memcached <no-dsa> (Minor issue) + [bullseye] - memcached <no-dsa> (Minor issue) NOTE: https://github.com/memcached/memcached/commit/6987918e9a3094ec4fc8976f01f769f624d790fa (1.6.22) CVE-2023-46852 (In Memcached before 1.6.22, a buffer overflow exists when processing m ...) - memcached 1.6.22-1 + [bookworm] - memcached <no-dsa> (Minor issue) + [bullseye] - memcached <no-dsa> (Minor issue) NOTE: https://github.com/memcached/memcached/commit/76a6c363c18cfe7b6a1524ae64202ac9db330767 (1.6.22) CVE-2023-46604 (Apache ActiveMQ is vulnerable to Remote Code Execution.The vulnerabili ...) TODO: check @@ -5199,6 +5203,8 @@ CVE-2023-5256 (In certain scenarios, Drupal's JSON:API module will output error - drupal7 <removed> CVE-2023-5215 (A flaw was found in libnbd. A server can reply with a block size large ...) - libnbd 1.16.5-1 + [bookworm] - libnbd <no-dsa> (Minor issue) + [bullseye] - libnbd <no-dsa> (Minor issue) NOTE: https://listman.redhat.com/archives/libguestfs/2023-September/032635.html NOTE: Fixed by: https://gitlab.com/nbdkit/libnbd/-/commit/0f8ee8c6bd6dd93de771e6d4da87ec5a59504aae (v1.18.0) NOTE: Fixed by: https://gitlab.com/nbdkit/libnbd/-/commit/f03330181229360a1a97a264aa956fea54c657de (v1.16.5) @@ -13374,6 +13380,8 @@ CVE-2023-4067 (The Bus Ticket Booking with Seat Reservation plugin for WordPress NOT-FOR-US: Bus Ticket Booking with Seat Reservation plugin for WordPress CVE-2023-3978 (Text nodes not in the HTML namespace are incorrectly literally rendere ...) - golang-golang-x-net 1:0.14.0-1 (bug #1043163) + [bookworm] - golang-golang-x-net <no-dsa> (Minor issue) + [bullseye] - golang-golang-x-net <no-dsa> (Minor issue) - golang-golang-x-net-dev <removed> [buster] - golang-golang-x-net-dev <postponed> (Limited support, follow bullseye DSAs/point-releases) NOTE: https://go.dev/cl/514896 |