From ea5b2221036e1aa45b1e649aa4d8d4efdbc8a2cf Mon Sep 17 00:00:00 2001 From: Sylvain Beucler Date: Tue, 23 Nov 2021 18:41:04 +0100 Subject: CVE-2021-3658/bluez: stretch not-affected (fix rationale) --- data/CVE/list.2021 | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/data/CVE/list.2021 b/data/CVE/list.2021 index 4958189ff0..9daa403c0c 100644 --- a/data/CVE/list.2021 +++ b/data/CVE/list.2021 @@ -16473,7 +16473,7 @@ CVE-2021-3658 - bluez 5.61-1 (bug #991596) [bullseye] - bluez (Minor issue) [buster] - bluez (Minor issue) - [stretch] - bluez (Minor issue) + [stretch] - bluez (Vulnerable code introduced later) NOTE: Introduced by https://git.kernel.org/pub/scm/bluetooth/bluez.git/commit/?id=d04eb02f9bad8795297210ef80e262be16ea8f07 (5.51) NOTE: Fixed by https://git.kernel.org/pub/scm/bluetooth/bluez.git/commit/?id=b497b5942a8beb8f89ca1c359c54ad67ec843055 CVE-2021-37216 (QSAN Storage Manager header page parameters does not filter special ch ...) -- cgit v1.2.3