Salvatore Bonaccorso pushed to branch master at Debian Security Tracker /
security-tracker
Commits:
b185476b by Salvatore Bonaccorso at 2023-05-27T13:35:02+02:00
Track two c-ares fixes via unstable
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -484,7 +484,7 @@ CVE-2023-2586 (Teltonika\u2019s Remote Management System
versions 4.14.0 is vuln
NOT-FOR-US: Teltonika
CVE-2023-32067 (c-ares is an asynchronous resolver library. c-ares is
vulnerable to de ...)
[experimental] - c-ares 1.19.1-1
- - c-ares <unfixed>
+ - c-ares 1.18.1-3
NOTE:
https://github.com/c-ares/c-ares/security/advisories/GHSA-9g78-jv2r-p7vc
NOTE:
https://github.com/c-ares/c-ares/commit/b9b8413cfdb70a3f99e1573333b23052d57ec1ae
(cares-1_19_1)
CVE-2023-33297 (Bitcoin Core before 24.1, when debug mode is not used, allows
attacker ...)
@@ -2406,7 +2406,7 @@ CVE-2023-31131 (Greenplum Database (GPDB) is an open
source data warehouse based
NOT-FOR-US: Greenplum Database
CVE-2023-31130 (c-ares is an asynchronous resolver library.
ares_inet_net_pton() is vu ...)
[experimental] - c-ares 1.19.1-1
- - c-ares <unfixed>
+ - c-ares 1.18.1-3
NOTE:
https://github.com/c-ares/c-ares/security/advisories/GHSA-x6mf-cxr9-8q6v
NOTE:
https://github.com/c-ares/c-ares/commit/f22cc01039b6473b736d3bf438f56a2654cdf2b2
(cares-1_19_1)
CVE-2023-31129 (The Contiki-NG operating system versions 4.8 and prior can be
triggere ...)
View it on GitLab:
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/b185476b62cd6ebb03a6b75c7c7f169ae6180343
--
View it on GitLab:
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/b185476b62cd6ebb03a6b75c7c7f169ae6180343
You're receiving this email because of your account on salsa.debian.org.
_______________________________________________
debian-security-tracker-commits mailing list
[email protected]
https://alioth-lists.debian.net/cgi-bin/mailman/listinfo/debian-security-tracker-commits