From 899f3de0d154dfbe84ec807a82765fdc790519af Mon Sep 17 00:00:00 2001 From: Salvatore Bonaccorso Date: Thu, 2 Dec 2021 09:16:16 +0100 Subject: Add CVE-2021-44227/mailman --- data/CVE/2021.list | 4 +++- 1 file changed, 3 insertions(+), 1 deletion(-) diff --git a/data/CVE/2021.list b/data/CVE/2021.list index cbd08eb90b..949f5a2e15 100644 --- a/data/CVE/2021.list +++ b/data/CVE/2021.list @@ -621,7 +621,9 @@ CVE-2021-4024 [podman: podman machine spawns gvproxy with port binded to all IPs NOTE: Introduced by: https://github.com/containers/podman/commit/7ef3981abe2412727840a2886489a08c03a05299 (v3.3.0-rc1) NOTE: Fixed by: https://github.com/containers/podman/commit/295d87bb0b028e57dc2739791dee4820fe5fcc48 CVE-2021-44227 (In GNU Mailman before 2.1.38, a list member or moderator can get a CSR ...) - TODO: check + - mailman + NOTE: https://bugs.launchpad.net/mailman/+bug/1952384 + NOTE: Patch: https://launchpadlibrarian.net/570827498/patch.txt CVE-2021-44226 RESERVED CVE-2021-4023 -- cgit v1.2.3