From 26e04389fca5215068288981234b5d445b08c952 Mon Sep 17 00:00:00 2001 From: Salvatore Bonaccorso Date: Mon, 3 Jan 2022 21:18:43 +0100 Subject: Remove notes from CVE-2021-45959, withdrawn as it is no security issue --- data/CVE/2021.list | 6 ------ 1 file changed, 6 deletions(-) diff --git a/data/CVE/2021.list b/data/CVE/2021.list index 456426e546..4815e9d8ba 100644 --- a/data/CVE/2021.list +++ b/data/CVE/2021.list @@ -354,12 +354,6 @@ CVE-2021-45960 (In Expat (aka libexpat) before 2.4.3, a left shift by 29 (or mor NOTE: https://github.com/libexpat/libexpat/pull/534 CVE-2021-45959 REJECTED - - fmtlib (unimportant) - NOTE: https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=36110 - NOTE: https://github.com/fmtlib/fmt/issues/2685 - NOTE: Fixed by: https://github.com/fmtlib/fmt/commit/2038bf61831eb8faede0883965364a974d1350fe - NOTE: The CVE is basically invalid, as the report was one of a series of false positives - NOTE: and the "upstream fix" is effectively a noop. CVE-2021-45958 (UltraJSON (aka ujson) 4.0.2 through 5.0.0 has a stack-based buffer ove ...) - ujson NOTE: https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=36009 -- cgit v1.2.3