From 0223240c532586ed5e15aabd41125397b7bf0dc7 Mon Sep 17 00:00:00 2001 From: Salvatore Bonaccorso Date: Thu, 23 Jun 2022 07:52:36 +0200 Subject: Add CVE-2022-33070/protobuf-c --- data/CVE/list | 4 +++- 1 file changed, 3 insertions(+), 1 deletion(-) diff --git a/data/CVE/list b/data/CVE/list index 500a0fcffa..b915226ff7 100644 --- a/data/CVE/list +++ b/data/CVE/list @@ -2965,7 +2965,9 @@ CVE-2022-33072 CVE-2022-33071 RESERVED CVE-2022-33070 (Protobuf-c v1.4.0 was discovered to contain an invalid arithmetic shif ...) - TODO: check + - protobuf-c + NOTE: https://github.com/protobuf-c/protobuf-c/issues/506 + NOTE: https://github.com/protobuf-c/protobuf-c/pull/508 CVE-2022-33069 (Ethereum Solidity v0.8.14 contains an assertion failure via SMTEncoder ...) TODO: check CVE-2022-33068 (An integer overflow in the component hb-ot-shape-fallback.cc of Harfbu ...) -- cgit v1.2.3