Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / 
security-tracker


Commits:
1ac3e867 by Moritz Muehlenhoff at 2024-04-18T12:19:37+02:00
fastdds fixed in sid

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -9509,7 +9509,7 @@ CVE-2024-28286 (In mz-automation libiec61850 v1.4.0, a 
NULL Pointer Dereference
        NOT-FOR-US: libIEC61850
 CVE-2024-28231 (eprosima Fast DDS is a C++ implementation of the Data 
Distribution Ser ...)
        [experimental] - fastdds 2.14.0+ds-1
-       - fastdds <unfixed> (bug #1067393)
+       - fastdds 2.14.0+ds-2 (bug #1067393)
        NOTE: 
https://github.com/eProsima/Fast-DDS/security/advisories/GHSA-9m2j-qw67-ph4w
        NOTE: 
https://github.com/eProsima/Fast-DDS/commit/355706386f4af9ce74125eeec3c449b06113112b
 (v2.14.0)
 CVE-2024-28179 (Jupyter Server Proxy allows users to run arbitrary external 
processes  ...)
@@ -10173,7 +10173,7 @@ CVE-2024-28237 (OctoPrint provides a web interface for 
controlling consumer 3D p
        NOT-FOR-US: OctoPrint
 CVE-2024-26369 (An issue in the HistoryQosPolicy component of FastDDS v2.12.x, 
v2.11.x ...)
        [experimental] - fastdds 2.14.0+ds-1
-       - fastdds <unfixed> (bug #1067180)
+       - fastdds 2.14.0+ds-2 (bug #1067180)
        NOTE: https://github.com/eProsima/Fast-DDS/issues/4365
        NOTE: https://github.com/eProsima/Fast-DDS/pull/4375
 CVE-2024-25942 (Dell PowerEdge Server BIOS contains an Improper SMM 
communication buff ...)
@@ -13065,7 +13065,7 @@ CVE-2024-1142 (Path Traversal in Sonatype IQ Server 
from version 143 allows remo
        NOT-FOR-US: Sonatype
 CVE-2023-50716 (eProsima Fast DDS (formerly Fast RTPS) is a C++ implementation 
of the  ...)
        [experimental] - fastdds 2.14.0+ds-1
-       - fastdds <unfixed> (bug #1066119)
+       - fastdds 2.14.0+ds-2 (bug #1066119)
        NOTE: 
https://github.com/eProsima/Fast-DDS/security/advisories/GHSA-5m2f-hvj2-cx2h
 CVE-2023-50167 (Pega Platform from 7.1.7 to 23.1.1 is affected by an XSS issue 
with ed ...)
        NOT-FOR-US: Pega Platform
@@ -18054,7 +18054,7 @@ CVE-2024-1343 (A weak permission was found in the 
backup directory in LaborOffic
        NOT-FOR-US: LaborOfficeFree
 CVE-2023-50257 (eProsima Fast DDS (formerly Fast RTPS) is a C++ implementation 
of the  ...)
        [experimental] - fastdds 2.14.0+ds-1
-       - fastdds <unfixed> (bug #1064515)
+       - fastdds 2.14.0+ds-2 (bug #1064515)
        [bookworm] - fastdds <no-dsa> (Minor issue)
        [bullseye] - fastdds <no-dsa> (Minor issue)
        NOTE: 
https://github.com/eProsima/Fast-DDS/security/advisories/GHSA-v5r6-8mvh-cp98



View it on GitLab: 
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/1ac3e867d79cd59e5e8997b92273e4abd3db3a5e

-- 
View it on GitLab: 
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/1ac3e867d79cd59e5e8997b92273e4abd3db3a5e
You're receiving this email because of your account on salsa.debian.org.


_______________________________________________
debian-security-tracker-commits mailing list
debian-security-tracker-commits@alioth-lists.debian.net
https://alioth-lists.debian.net/cgi-bin/mailman/listinfo/debian-security-tracker-commits

Reply via email to