Merge ~bruce-cable/ubuntu-cve-tracker:master into ubuntu-cve-tracker:master

Proposed by Bruce Cable
Status: Merged
Merged at revision: f7be2d7e369381f1d74013976c1c723b9ad279d0
Proposed branch: ~bruce-cable/ubuntu-cve-tracker:master
Merge into: ubuntu-cve-tracker:master
Diff against target: 29 lines (+4/-2)
1 file modified
active/CVE-2022-22995 (+4/-2)
Reviewer Review Type Date Requested Status
Nishit Majithia Approve
Review via email: mp+466484@code.launchpad.net
To post a comment you must log in.
Revision history for this message
Nishit Majithia (0xnishit) wrote :

lgtm!!

review: Approve

Preview Diff

[H/L] Next/Prev Comment, [J/K] Next/Prev File, [N/P] Next/Prev Hunk
1diff --git a/active/CVE-2022-22995 b/active/CVE-2022-22995
2index 2fc3849..b3cca11 100644
3--- a/active/CVE-2022-22995
4+++ b/active/CVE-2022-22995
5@@ -1,3 +1,4 @@
6+PublicDateAtUSN: 2022-03-25 23:15:00 UTC
7 Candidate: CVE-2022-22995
8 PublicDate: 2022-03-25 23:15:00 UTC
9 References:
10@@ -5,6 +6,7 @@ References:
11 https://github.com/Netatalk/netatalk/pull/509
12 https://github.com/Netatalk/netatalk/commit/9eb6d9d0ac17dca210ccbf05476a925a6b379dfb
13 https://www.cve.org/CVERecord?id=CVE-2022-22995
14+ https://ubuntu.com/security/notices/USN-6786-1
15 Description:
16 The combination of primitives offered by SMB and AFP in their default
17 configuration allows the arbitrary writing of files. By exploiting these
18@@ -29,9 +31,9 @@ esm-apps/xenial_netatalk: not-affected (code not present)
19 bionic_netatalk: ignored (end of standard support)
20 esm-apps/bionic_netatalk: not-affected (code not present)
21 focal_netatalk: needed
22-esm-apps/focal_netatalk: needed
23+esm-apps/focal_netatalk: released (3.1.12~ds-4ubuntu0.20.04.3+esm1)
24 jammy_netatalk: needed
25-esm-apps/jammy_netatalk: needed
26+esm-apps/jammy_netatalk: released (3.1.12~ds-9ubuntu0.22.04.3+esm1)
27 lunar_netatalk: ignored (end of life, was needs-triage)
28 mantic_netatalk: needed
29 noble_netatalk: not-affected (3.1.18~ds-1build4)

Subscribers

People subscribed via source and target branches