summaryrefslogtreecommitdiffstats
diff options
context:
space:
mode:
authorSalvatore Bonaccorso <carnil@debian.org>2022-01-02 21:59:17 +0100
committerSalvatore Bonaccorso <carnil@debian.org>2022-01-02 21:59:17 +0100
commita685e41d881089a59dbb7352c8108f0e03e58fd7 (patch)
tree25fdc78f1db7b58d160e14edbe961e7d2c850162
parentcabbb601393556bd88460268e9fd6c2f56360bb5 (diff)
Add CVE-2021-45950/libredwg
-rw-r--r--data/CVE/2021.list2
1 files changed, 1 insertions, 1 deletions
diff --git a/data/CVE/2021.list b/data/CVE/2021.list
index 8120e1036d..a7c9a860c7 100644
--- a/data/CVE/2021.list
+++ b/data/CVE/2021.list
@@ -100,7 +100,7 @@ CVE-2021-45951 (Dnsmasq 2.86 has a heap-based buffer overflow in check_bad_addre
NOTE: https://github.com/google/oss-fuzz-vulns/blob/main/vulns/dnsmasq/OSV-2021-924.yaml
TODO: check, the introducing commit seems odd, and might be just related to when fuzzing started, and is same for other dnsmaq and oss-fuzz related reports.
CVE-2021-45950 (LibreDWG 0.12.4.4313 through 0.12.4.4367 has an out-of-bounds write in ...)
- TODO: check
+ - libredwg <itp> (bug #595191)
CVE-2021-45949 (Ghostscript GhostPDL 9.50 through 9.54.0 has a heap-based buffer overf ...)
- ghostscript 9.55.0~dfsg-1
NOTE: https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=34675

© 2014-2024 Faster IT GmbH | imprint | privacy policy