summaryrefslogtreecommitdiffstats
diff options
context:
space:
mode:
authorSalvatore Bonaccorso <carnil@debian.org>2022-02-22 07:18:27 +0100
committerSalvatore Bonaccorso <carnil@debian.org>2022-02-22 07:18:27 +0100
commit6dfb5b12967bccba2ea00c1148613246b8f541ca (patch)
tree0df9d1d21dd330e22a675eca0b0e33d71c62b777
parent1c8b3e06af323fa1979b2a68da1190615da0f786 (diff)
Add three mruby issues
-rw-r--r--data/CVE/2022.list12
1 files changed, 9 insertions, 3 deletions
diff --git a/data/CVE/2022.list b/data/CVE/2022.list
index 7de1390be3..a6ae543200 100644
--- a/data/CVE/2022.list
+++ b/data/CVE/2022.list
@@ -957,11 +957,17 @@ CVE-2022-0634
CVE-2022-0633 (The UpdraftPlus WordPress plugin Free before 1.22.3 and Premium before ...)
NOT-FOR-US: WordPress plugin
CVE-2022-0632 (NULL Pointer Dereference in Homebrew mruby prior to 3.2. ...)
- TODO: check
+ - mruby <not-affected> (Vulnerable code introduced later)
+ NOTE: https://huntr.dev/bounties/3e5bb8f6-30fd-4553-86dd-761e9459ce1b
+ NOTE: https://github.com/mruby/mruby/commit/44f591aa8f7091e6ca6cb418e428ae6d4ceaf77d
CVE-2022-0631 (Heap-based Buffer Overflow in Homebrew mruby prior to 3.2. ...)
- TODO: check
+ - mruby <not-affected> (Vulnerable code introduced later)
+ NOTE: https://huntr.dev/bounties/9bdc49ca-6697-4adc-a785-081e1961bf40
+ NOTE: https://github.com/mruby/mruby/commit/47068ae07a5fa3aa9a1879cdfe98a9ce0f339299
CVE-2022-0630 (Out-of-bounds Read in Homebrew mruby prior to 3.2. ...)
- TODO: check
+ - mruby <not-affected> (Vulnerable code introduced later)
+ NOTE: https://huntr.dev/bounties/f7cdd680-1a7f-4992-b4b8-44b5e4ba3e32
+ NOTE: https://github.com/mruby/mruby/commit/ff3a5ebed6ffbe3e70481531cfb969b497aa73ad
CVE-2022-0629 (Stack-based Buffer Overflow in GitHub repository vim/vim prior to 8.2. ...)
- vim <unfixed>
[bullseye] - vim <no-dsa> (Minor issue)

© 2014-2024 Faster IT GmbH | imprint | privacy policy