Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker
Commits: 7126784f by Moritz Mühlenhoff at 2024-08-07T10:22:40+02:00 arm-trusted-firmware unimportant - - - - - 1 changed file: - data/CVE/list Changes: ===================================== data/CVE/list ===================================== @@ -10135,17 +10135,15 @@ CVE-2024-6290 (Use after free in Dawn in Google Chrome prior to 126.0.6478.126 a [bullseye] - chromium <end-of-life> (see #1061268) [buster] - chromium <end-of-life> (see DSA 5046) CVE-2024-6287 (Incorrect Calculation vulnerability in Renesas arm-trusted-firmware al ...) - - arm-trusted-firmware <unfixed> (bug #1074431) - [bookworm] - arm-trusted-firmware <no-dsa> (Minor issue) - [bullseye] - arm-trusted-firmware <no-dsa> (Minor issue) + - arm-trusted-firmware <unfixed> (unimportant; bug #1074431) NOTE: https://github.com/renesas-rcar/arm-trusted-firmware/commit/954d488a9798f8fda675c6b57c571b469b298f04 NOTE: https://asrg.io/security-advisories/cve-2024-6287-incorrect-address-range-calculations-in-renesas-rcar/ + NOTE: Vulnerable targets not built in Debian CVE-2024-6285 (Integer Underflow (Wrap or Wraparound) vulnerability in Renesas arm-tr ...) - - arm-trusted-firmware <unfixed> (bug #1074431) - [bookworm] - arm-trusted-firmware <no-dsa> (Minor issue) - [bullseye] - arm-trusted-firmware <no-dsa> (Minor issue) + - arm-trusted-firmware <unfixed> (unimportant; bug #1074431) NOTE: https://github.com/renesas-rcar/arm-trusted-firmware/commit/b596f580637bae919b0ac3a5471422a1f756db3b NOTE: https://asrg.io/security-advisories/cve-2024-6285-integer-underflow-in-memory-range-check-in-renesas-rcar/ + NOTE: Vulnerable targets not built in Debian CVE-2024-6160 (SQL Injection vulnerability in MegaBIP software allows attacker to dis ...) NOT-FOR-US: MegaBIP CVE-2024-6104 (go-retryablehttp prior to 0.7.7 did not sanitize urls when writing the ...) View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/7126784fd7f57dcb5dba478e5cb5d38d78b9c432 -- View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/7126784fd7f57dcb5dba478e5cb5d38d78b9c432 You're receiving this email because of your account on salsa.debian.org.
_______________________________________________ debian-security-tracker-commits mailing list debian-security-tracker-commits@alioth-lists.debian.net https://alioth-lists.debian.net/cgi-bin/mailman/listinfo/debian-security-tracker-commits