summaryrefslogtreecommitdiffstats
diff options
context:
space:
mode:
authorNeil Williams <codehelp@debian.org>2022-05-20 10:21:27 +0100
committerNeil Williams <codehelp@debian.org>2022-05-20 10:21:27 +0100
commit369b4e8337544582e514ea376c5df6be3c41292a (patch)
tree40caf996c1182772f9a33af32296fcaa0462a848
parent9b97ac20dfaa3560f1dffb1586a5410566ed5cf9 (diff)
CVE-2021-27548/texlive-bin unfixed 1011333
-rw-r--r--data/CVE/list5
1 files changed, 4 insertions, 1 deletions
diff --git a/data/CVE/list b/data/CVE/list
index 653c506db0..fa0d1b5a76 100644
--- a/data/CVE/list
+++ b/data/CVE/list
@@ -79603,7 +79603,10 @@ CVE-2021-27550 (Polaris Office v9.102.66 is affected by a divide-by-zero error i
CVE-2021-27549 (** DISPUTED ** Genymotion Desktop through 3.2.0 leaks the host's clipb ...)
NOT-FOR-US: Genymotion Desktop
CVE-2021-27548 (There is a Null Pointer Dereference vulnerability in the XFAScanner::s ...)
- TODO: check
+ - texlive-bin <unfixed> (bug #1011333)
+ [bullseye] - texlive-bin <not-affected> (Vulnerable code introduced later)
+ NOTE: embeds http://www.xpdfreader.com/download.html
+ NOTE: PoC crashes pdftosrc binary.
CVE-2021-27547
RESERVED
CVE-2021-27546

© 2014-2024 Faster IT GmbH | imprint | privacy policy