From 3a6488a4a1355ae9c6916fa5bca1647713a12401 Mon Sep 17 00:00:00 2001 From: Salvatore Bonaccorso Date: Thu, 2 Dec 2021 09:16:16 +0100 Subject: Add CVE-2021-44227/mailman --- data/CVE/list.2021 | 4 +++- 1 file changed, 3 insertions(+), 1 deletion(-) diff --git a/data/CVE/list.2021 b/data/CVE/list.2021 index cbd08eb90b..949f5a2e15 100644 --- a/data/CVE/list.2021 +++ b/data/CVE/list.2021 @@ -621,7 +621,9 @@ CVE-2021-4024 [podman: podman machine spawns gvproxy with port binded to all IPs NOTE: Introduced by: https://github.com/containers/podman/commit/7ef3981abe2412727840a2886489a08c03a05299 (v3.3.0-rc1) NOTE: Fixed by: https://github.com/containers/podman/commit/295d87bb0b028e57dc2739791dee4820fe5fcc48 CVE-2021-44227 (In GNU Mailman before 2.1.38, a list member or moderator can get a CSR ...) - TODO: check + - mailman + NOTE: https://bugs.launchpad.net/mailman/+bug/1952384 + NOTE: Patch: https://launchpadlibrarian.net/570827498/patch.txt CVE-2021-44226 RESERVED CVE-2021-4023 -- cgit v1.2.3