summaryrefslogtreecommitdiffstats
diff options
context:
space:
mode:
authorSalvatore Bonaccorso <carnil@debian.org>2022-01-02 21:59:17 +0100
committerSalvatore Bonaccorso <carnil@debian.org>2022-01-02 21:59:17 +0100
commit264e40cb48b40c5aa0d12500630161aa79e09fd4 (patch)
treec41e383c767ef96e7763f12218ce97cc2e341d7d
parenta5ead3ff83f7b73f8f264a02e91223504d7e1311 (diff)
Add CVE-2021-45950/libredwg
-rw-r--r--data/CVE/list.20212
1 files changed, 1 insertions, 1 deletions
diff --git a/data/CVE/list.2021 b/data/CVE/list.2021
index 8120e1036d..a7c9a860c7 100644
--- a/data/CVE/list.2021
+++ b/data/CVE/list.2021
@@ -100,7 +100,7 @@ CVE-2021-45951 (Dnsmasq 2.86 has a heap-based buffer overflow in check_bad_addre
NOTE: https://github.com/google/oss-fuzz-vulns/blob/main/vulns/dnsmasq/OSV-2021-924.yaml
TODO: check, the introducing commit seems odd, and might be just related to when fuzzing started, and is same for other dnsmaq and oss-fuzz related reports.
CVE-2021-45950 (LibreDWG 0.12.4.4313 through 0.12.4.4367 has an out-of-bounds write in ...)
- TODO: check
+ - libredwg <itp> (bug #595191)
CVE-2021-45949 (Ghostscript GhostPDL 9.50 through 9.54.0 has a heap-based buffer overf ...)
- ghostscript 9.55.0~dfsg-1
NOTE: https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=34675

© 2014-2024 Faster IT GmbH | imprint | privacy policy