summaryrefslogtreecommitdiffstats
diff options
context:
space:
mode:
authorEmilio Pozuelo Monfort <pochu@debian.org>2022-08-18 09:46:31 +0200
committerEmilio Pozuelo Monfort <pochu@debian.org>2022-08-18 09:46:31 +0200
commit7cea4b479af84a5fc41316a6273525a1714358d3 (patch)
tree0952345fdf9db503acababf1efe72de5cff236ce
parent5df204ab1a55a3b244b6bd5987e8f9716ace3616 (diff)
Reserve DLA-3074-1 for epiphany-browser
-rw-r--r--data/CVE/list3
-rw-r--r--data/DLA/list3
-rw-r--r--data/dla-needed.txt3
3 files changed, 3 insertions, 6 deletions
diff --git a/data/CVE/list b/data/CVE/list
index 4295284325..e59ee5c67d 100644
--- a/data/CVE/list
+++ b/data/CVE/list
@@ -50324,14 +50324,12 @@ CVE-2021-45089 (Stormshield Endpoint Security 2.x before 2.1.2 has Incorrect Acc
CVE-2021-45088 (XSS can occur in GNOME Web (aka Epiphany) before 40.4 and 41.x before ...)
{DSA-5042-1}
- epiphany-browser 41.2-1
- [buster] - epiphany-browser <no-dsa> (Minor issue)
[stretch] - epiphany-browser <ignored> (WebKit browser, not covered by security support in stretch)
NOTE: https://gitlab.gnome.org/GNOME/epiphany/-/issues/1612
NOTE: https://gitlab.gnome.org/GNOME/epiphany/-/merge_requests/1045
CVE-2021-45087 (XSS can occur in GNOME Web (aka Epiphany) before 40.4 and 41.x before ...)
{DSA-5042-1}
- epiphany-browser 41.2-1
- [buster] - epiphany-browser <no-dsa> (Minor issue)
[stretch] - epiphany-browser <ignored> (WebKit browser, not covered by security support in stretch)
NOTE: https://gitlab.gnome.org/GNOME/epiphany/-/issues/1612
NOTE: https://gitlab.gnome.org/GNOME/epiphany/-/merge_requests/1045
@@ -50345,7 +50343,6 @@ CVE-2021-45086 (XSS can occur in GNOME Web (aka Epiphany) before 40.4 and 41.x b
CVE-2021-45085 (XSS can occur in GNOME Web (aka Epiphany) before 40.4 and 41.x before ...)
{DSA-5042-1}
- epiphany-browser 41.2-1
- [buster] - epiphany-browser <no-dsa> (Minor issue)
[stretch] - epiphany-browser <ignored> (WebKit browser, not covered by security support in stretch)
NOTE: https://gitlab.gnome.org/GNOME/epiphany/-/issues/1612
NOTE: https://gitlab.gnome.org/GNOME/epiphany/-/merge_requests/1045
diff --git a/data/DLA/list b/data/DLA/list
index 275c8f43b9..00b22f5876 100644
--- a/data/DLA/list
+++ b/data/DLA/list
@@ -1,3 +1,6 @@
+[18 Aug 2022] DLA-3074-1 epiphany-browser - security update
+ {CVE-2021-45085 CVE-2021-45087 CVE-2021-45088 CVE-2022-29536}
+ [buster] - epiphany-browser 3.32.1.2-3~deb10u2
[17 Aug 2022] DLA-3073-1 webkit2gtk - security update
{CVE-2022-32792 CVE-2022-32816}
[buster] - webkit2gtk 2.36.6-1~deb10u1
diff --git a/data/dla-needed.txt b/data/dla-needed.txt
index aaa483acf0..52147d98d9 100644
--- a/data/dla-needed.txt
+++ b/data/dla-needed.txt
@@ -29,9 +29,6 @@ asterisk (Markus Koschany)
curl (Markus Koschany)
NOTE: 20220802: Programming language: C.
--
-epiphany-browser (Emilio)
- NOTE: 20220811: Programming language: C.
---
freecad (Emilio)
NOTE: 20220815: Programming language: Python.
NOTE: 20220815: Not all of the vulnerable os.system calls exist in the buster version. (lamby)

© 2014-2024 Faster IT GmbH | imprint | privacy policy