From c9b1203127d0ee2c5aac262942d4e88506a28d57 Mon Sep 17 00:00:00 2001 From: Salvatore Bonaccorso Date: Fri, 18 Feb 2022 07:58:04 +0100 Subject: CVE-2021-4115: Add reference for GHSL-2021-077 --- data/CVE/2021.list | 1 + 1 file changed, 1 insertion(+) (limited to 'data/CVE/2021.list') diff --git a/data/CVE/2021.list b/data/CVE/2021.list index d79cc7f878..8170ef8391 100644 --- a/data/CVE/2021.list +++ b/data/CVE/2021.list @@ -4295,6 +4295,7 @@ CVE-2021-4115 [file descriptor leak allows an unprivileged user to cause a crash [buster] - policykit-1 (Vulnerable code not present, patch introducing issue not backported) [stretch] - policykit-1 (Vulnerable code not present, patch introducing issue not backported) NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=2007534 + NOTE: https://securitylab.github.com/advisories/GHSL-2021-077-polkit/ NOTE: Issue Upstream introduced in 0.113 with https://gitlab.freedesktop.org/polkit/polkit/-/commit/bfa5036bfb93582c5a87c44b847957479d911e38 NOTE: Debian backported 0.113 commits in 0.105-26 CVE-2021-4114 -- cgit v1.2.3