From 197cacb9c2e062a56af7d5b7b0697c48284c9309 Mon Sep 17 00:00:00 2001 From: Moritz Muehlenhoff Date: Mon, 22 Nov 2021 13:08:17 +0100 Subject: NFU --- data/CVE/list | 13 +++++++------ 1 file changed, 7 insertions(+), 6 deletions(-) diff --git a/data/CVE/list b/data/CVE/list index 8390f63caa..a7a8b57c31 100644 --- a/data/CVE/list +++ b/data/CVE/list @@ -2268,6 +2268,7 @@ CVE-2021-3942 RESERVED CVE-2021-43557 RESERVED + NOT-FOR-US: Apache Apisix CVE-2021-3941 RESERVED - openexr @@ -22771,22 +22772,22 @@ CVE-2021-35940 (An out-of-bounds array read in the apr_time_exp*() functions was CVE-2021-35939 [checks for unsafe symlinks are not performed for intermediary directories] RESERVED - rpm (bug #990543) - [bullseye] - rpm (Minor issue) - [buster] - rpm (Minor issue) + [bullseye] - rpm (Minor issue) + [buster] - rpm (Minor issue) [stretch] - rpm (Minor issue) NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=1964129 CVE-2021-35938 [races with chown/chmod/capabilities calls during installation] RESERVED - rpm (bug #990543) - [bullseye] - rpm (Minor issue) - [buster] - rpm (Minor issue) + [bullseye] - rpm (Minor issue) + [buster] - rpm (Minor issue) [stretch] - rpm (Minor issue) NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=1964114 CVE-2021-35937 [TOCTOU race in checks for unsafe symlinks] RESERVED - rpm (bug #990543) - [bullseye] - rpm (Minor issue) - [buster] - rpm (Minor issue) + [bullseye] - rpm (Minor issue) + [buster] - rpm (Minor issue) [stretch] - rpm (Minor issue) NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=1964125 CVE-2021-35936 (If remote logging is not used, the worker (in the case of CeleryExecut ...) -- cgit v1.2.3