CVE-2021-40426

Related Vulnerabilities: CVE-2021-40426  

Debian Bug report logs - #1012138
CVE-2021-40426

version graph

Reported by: Moritz Muehlenhoff <jmm@debian.org>

Date: Mon, 30 May 2022 19:06:02 UTC

Severity: grave

Tags: security, upstream

Found in version sox/14.4.2+git20190427-3

Reply or subscribe to this bug.

Toggle useless messages

View this report as an mbox folder, status mbox, maintainer mbox


Report forwarded to debian-bugs-dist@lists.debian.org, team@security.debian.org, Debian Multimedia Maintainers <debian-multimedia@lists.debian.org>:
Bug#1012138; Package src:sox. (Mon, 30 May 2022 19:06:04 GMT) (full text, mbox, link).


Acknowledgement sent to Moritz Muehlenhoff <jmm@debian.org>:
New Bug report received and forwarded. Copy sent to team@security.debian.org, Debian Multimedia Maintainers <debian-multimedia@lists.debian.org>. (Mon, 30 May 2022 19:06:04 GMT) (full text, mbox, link).


Message #5 received at submit@bugs.debian.org (full text, mbox, reply):

From: Moritz Muehlenhoff <jmm@debian.org>
To: Debian Bug Tracking System <submit@bugs.debian.org>
Subject: CVE-2021-40426
Date: Mon, 30 May 2022 21:02:57 +0200
Source: sox
Version: 14.4.2+git20190427-3
Severity: grave
Tags: security
X-Debbugs-Cc: Debian Security Team <team@security.debian.org>

https://talosintelligence.com/vulnerability_reports/TALOS-2021-1434

The report states that upstream was notified, but we need to figure out
whether this was addressed by upstream already or not (and if so, in
which commit)

Cheers,
        Moritz



Added tag(s) upstream. Request was from Salvatore Bonaccorso <carnil@debian.org> to control@bugs.debian.org. (Mon, 30 May 2022 19:45:04 GMT) (full text, mbox, link).


Send a report that this bug log contains spam.


Debian bug tracking system administrator <owner@bugs.debian.org>. Last modified: Tue May 31 13:13:15 2022; Machine Name: buxtehude

Debian Bug tracking system

Debbugs is free software and licensed under the terms of the GNU Public License version 2. The current version can be obtained from https://bugs.debian.org/debbugs-source/.

Copyright © 1999 Darren O. Benham, 1997,2003 nCipher Corporation Ltd, 1994-97 Ian Jackson, 2005-2017 Don Armstrong, and many other contributors.