From fe0597738f68f8ef3f812be83835b2d065a2cc93 Mon Sep 17 00:00:00 2001 From: Moritz Muehlenhoff Date: Mon, 21 Feb 2022 17:03:02 +0100 Subject: buster/bullseye triage --- data/CVE/2021.list | 15 +++++++++++++++ 1 file changed, 15 insertions(+) (limited to 'data/CVE/2021.list') diff --git a/data/CVE/2021.list b/data/CVE/2021.list index ed3eda65d7..64c0101ce3 100644 --- a/data/CVE/2021.list +++ b/data/CVE/2021.list @@ -2,6 +2,8 @@ CVE-2021-46701 (PreMiD 2.2.0 allows unintended access via the websocket transpor NOT-FOR-US: PreMiD CVE-2021-46700 (In libsixel 1.8.6, sixel_encoder_output_without_macro (called from six ...) - libsixel + [bullseye] - libsixel (Minor issue) + [buster] - libsixel (Minor issue) NOTE: https://github.com/saitoha/libsixel/issues/158 CVE-2021-4222 RESERVED @@ -353,8 +355,11 @@ CVE-2021-4214 CVE-2021-4213 RESERVED - jss + [bullseye] - jss (Minor issue) + [buster] - jss (Minor issue) [stretch] - jss (revisit when/if fix is complete) NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=2042900 + NOTE: https://github.com/dogtagpki/jss/commit/5922560a78d0dee61af8a33cc9cfbf4cfa291448 CVE-2021-4212 RESERVED CVE-2021-4211 @@ -1594,22 +1599,32 @@ CVE-2021-46043 (A Pointer Dereference Vulnerability exits in GPAC 1.0.1 in the g NOTE: https://github.com/gpac/gpac/commit/f5a778edd1febd574ff9558d2faa57133bdb4a5f CVE-2021-46042 (A Pointer Dereference Vulnerability exists in GPAC 1.0.1 via the _fsee ...) - gpac + [bullseye] - gpac (Minor issue) + [buster] - gpac (Minor issue) NOTE: https://github.com/gpac/gpac/issues/2002 NOTE: https://github.com/gpac/gpac/commit/f5a778edd1febd574ff9558d2faa57133bdb4a5f CVE-2021-46041 (A Segmentation Fault Vulnerability exists in GPAC 1.0.1 via the co64_b ...) - gpac + [bullseye] - gpac (Minor issue) + [buster] - gpac (Minor issue) NOTE: https://github.com/gpac/gpac/issues/2004 NOTE: https://github.com/gpac/gpac/commit/f5a778edd1febd574ff9558d2faa57133bdb4a5f CVE-2021-46040 (A Pointer Dereference Vulnerabilty exists in GPAC 1.0.1 via the finpla ...) - gpac + [bullseye] - gpac (Minor issue) + [buster] - gpac (Minor issue) NOTE: https://github.com/gpac/gpac/issues/2003 NOTE: https://github.com/gpac/gpac/commit/f5a778edd1febd574ff9558d2faa57133bdb4a5f CVE-2021-46039 (A Pointer Dereference Vulnerabilty exists in GPAC 1.0.1 via the shift_ ...) - gpac + [bullseye] - gpac (Minor issue) + [buster] - gpac (Minor issue) NOTE: https://github.com/gpac/gpac/issues/1999 NOTE: https://github.com/gpac/gpac/commit/f5a778edd1febd574ff9558d2faa57133bdb4a5f CVE-2021-46038 (A Pointer Dereference vulnerability exists in GPAC 1.0.1 in unlink_chu ...) - gpac + [bullseye] - gpac (Minor issue) + [buster] - gpac (Minor issue) NOTE: https://github.com/gpac/gpac/issues/2000 NOTE: https://github.com/gpac/gpac/commit/f5a778edd1febd574ff9558d2faa57133bdb4a5f CVE-2021-46037 (MCMS v5.2.4 was discovered to contain an arbitrary file deletion vulne ...) -- cgit v1.2.3