Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Has CVE-2021-33890 been fixed? #185

Closed
xuoldk opened this issue Mar 24, 2022 · 6 comments
Closed

Has CVE-2021-33890 been fixed? #185

xuoldk opened this issue Mar 24, 2022 · 6 comments

Comments

@xuoldk
Copy link

xuoldk commented Mar 24, 2022

The current CVE-2021-33890 cannot be found in the NVD. But in https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-33890, I can see that he's still retained. Therefore, I want to confirm with the maintenancer whether this vulnerability exists. And has this vulnerability been fixed?

@xuoldk
Copy link
Author

xuoldk commented Mar 24, 2022

I have just read this issue. Your last message indicates that the CVE has not been confirmed and further communication with the proposer is required. Is that right?

@oxisto
Copy link
Collaborator

oxisto commented Mar 24, 2022

I have just read this issue. Your last message indicates that the CVE has not been confirmed and further communication with the proposer is required. Is that right?

According to the original author of the post it has been fixed in this repo here, but since I do not know the details of the issue I am having a hard time to confirm it 100 % :)

@oxisto
Copy link
Collaborator

oxisto commented Mar 24, 2022

My guess is that this is related to #40. @grantzvolsky can you confirm this?

@mfridman
Copy link
Member

mfridman commented May 6, 2022

Friendly ping @grantzvolsky, can you confirm?

Iirc this is one of the first issues we addressed.

@grantzvolsky
Copy link

@mfridman Yes, I can confirm that CVE-2021-33890 has been fixed in #40

@oxisto
Copy link
Collaborator

oxisto commented May 14, 2022

@mfridman Yes, I can confirm that CVE-2021-33890 has been fixed in #40

Thanks!

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

4 participants