summaryrefslogtreecommitdiffstats
diff options
context:
space:
mode:
authorSalvatore Bonaccorso <carnil@debian.org>2021-02-12 16:29:53 +0100
committerSalvatore Bonaccorso <carnil@debian.org>2021-02-12 16:32:12 +0100
commit7c99ec4a9f29fc3108d7addff8c6f21c8c7555ef (patch)
tree0c2cd23f80fb64f83644dfec18de91933785bf78
parent4c88dd9f6d2072106b45986ef043e508b59badb2 (diff)
Add CVE-2021-3409 assigned by Red Hat
The two CVEs CVE-2020-25085 and CVE-2020-17380 caused some confusion in other distros fixes, cf. https://bugzilla.redhat.com/show_bug.cgi?id=1862167#c11 and following and a new CVE was assigned to cover the incomplete fix for CVE-2020-17380/CVE-2020-25085 part.
-rw-r--r--data/CVE/list3
1 files changed, 3 insertions, 0 deletions
diff --git a/data/CVE/list b/data/CVE/list
index 09789b6cc3..b2a299ad3e 100644
--- a/data/CVE/list
+++ b/data/CVE/list
@@ -34255,6 +34255,9 @@ CVE-2020-25087 (Ecommerce-CodeIgniter-Bootstrap before 2020-08-03 allows XSS in
NOT-FOR-US: Ecommerce-CodeIgniter-Bootstrap
CVE-2020-25086 (Ecommerce-CodeIgniter-Bootstrap before 2020-08-03 allows XSS in applic ...)
NOT-FOR-US: Ecommerce-CodeIgniter-Bootstrap
+CVE-2021-3409 [sdhci: incomplete fix for CVE-2020-17380/CVE-2020-25085]
+ - qemu <unfixed>
+ NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=1928146
CVE-2020-25085 (QEMU 5.0.0 has a heap-based Buffer Overflow in flatview_read_continue ...)
{DLA-2469-1}
- qemu 1:5.2+dfsg-1 (bug #970540)

© 2014-2024 Faster IT GmbH | imprint | privacy policy