From 3722cbcb499d63b4803200e13acdda4414d6d276 Mon Sep 17 00:00:00 2001 From: Salvatore Bonaccorso Date: Wed, 16 Feb 2022 19:48:44 +0100 Subject: Update status for CVE-2022-0487/linux --- data/CVE/2022.list | 4 +++- 1 file changed, 3 insertions(+), 1 deletion(-) diff --git a/data/CVE/2022.list b/data/CVE/2022.list index 8f1324b446..16b8c88059 100644 --- a/data/CVE/2022.list +++ b/data/CVE/2022.list @@ -2150,9 +2150,11 @@ CVE-2022-24384 CVE-2022-21241 (Cross-site scripting vulnerability in CSV+ prior to 0.8.1 allows a rem ...) NOT-FOR-US: CSV+ CVE-2022-0487 (A use-after-free vulnerability was found in rtsx_usb_ms_drv_remove in ...) - - linux + - linux (unimportant) NOTE: https://bugzilla.suse.com/show_bug.cgi?id=1194516 NOTE: https://lore.kernel.org/all/20220114075934.302464-1-gregkh@linuxfoundation.org/ + NOTE: https://git.kernel.org/linus/bd2db32e7c3e35bd4d9b8bbff689434a50893546 + NOTE: CONFIG_MMC_MOXART is not set in Debian. CVE-2022-0486 RESERVED CVE-2022-0485 [nbdcopy: missing error handling may create corrupted destination image] -- cgit v1.2.3