summaryrefslogtreecommitdiffstats
path: root/data
diff options
context:
space:
mode:
authorSalvatore Bonaccorso <carnil@debian.org>2021-08-23 21:16:23 +0200
committerSalvatore Bonaccorso <carnil@debian.org>2021-08-23 21:16:23 +0200
commita10ad4420cc9a5f8d3b232b033f6653f6f7b63da (patch)
treeeb801cf6b047ddecdd63f5e4d3a7f2739b104fc4 /data
parenta428b2b03b6c480f6329f978ef9e79fc665f94c8 (diff)
Mark CVE-2021-38185/cpio as no-dsa
Diffstat (limited to 'data')
-rw-r--r--data/CVE/list2
1 files changed, 2 insertions, 0 deletions
diff --git a/data/CVE/list b/data/CVE/list
index 60cffb25c3..f50b45422e 100644
--- a/data/CVE/list
+++ b/data/CVE/list
@@ -3091,6 +3091,8 @@ CVE-2021-38186 (An issue was discovered in the comrak crate before 0.10.1 for Ru
NOT-FOR-US: Rust crate comrak
CVE-2021-38185 (GNU cpio through 2.13 allows attackers to execute arbitrary code via a ...)
- cpio 2.13+dfsg-5 (bug #992045)
+ [bullseye] - cpio <no-dsa> (Minor issue)
+ [buster] - cpio <no-dsa> (Minor issue)
[stretch] - cpio <no-dsa> (Minor issue)
NOTE: https://git.savannah.gnu.org/cgit/cpio.git/commit/?id=dd96882877721703e19272fe25034560b794061b
NOTE: https://github.com/fangqyi/cpiopwn

© 2014-2024 Faster IT GmbH | imprint | privacy policy