Skip to content

Conversation

@jlsec-bot
Copy link
Contributor

This action searched --project=util-linux, checking 21 (+0) advisories from NVD and 0 (+0) from EUVD for advisories that pertain here. It identified 21 advisories as being related to the Julia package(s): util_linux_jll, Libuuid_jll, and Libmount_jll.

21 advisories found concrete vulnerable ranges

  • CVE-2001-1147 for packages: util_linux_jll
    • util_linux_jll computed ["< 2.39.3+0"]. Its latest version (2.41.2+0) has components: {util-linux = "2.41.2"}
    • Libuuid_jll has no vulnerable versions; some versions contain vulnerable andries_brouwer:util-linux. Its latest version (2.41.2+0) has components: {util-linux = "2.41.2"}
    • Libmount_jll has no vulnerable versions; some versions contain vulnerable andries_brouwer:util-linux. Its latest version (2.41.2+0) has components: {util-linux = "2.41.2"}
  • CVE-2001-1175 for packages: util_linux_jll
    • util_linux_jll computed ["< 2.39.3+0"]. Its latest version (2.41.2+0) has components: {util-linux = "2.41.2"}
    • Libuuid_jll has no vulnerable versions; some versions contain vulnerable andries_brouwer:util-linux. Its latest version (2.41.2+0) has components: {util-linux = "2.41.2"}
    • Libmount_jll has no vulnerable versions; some versions contain vulnerable andries_brouwer:util-linux. Its latest version (2.41.2+0) has components: {util-linux = "2.41.2"}
  • CVE-2001-1494 for packages: util_linux_jll
    • util_linux_jll computed ["< 2.39.3+0"]. Its latest version (2.41.2+0) has components: {util-linux = "2.41.2"}
    • Libuuid_jll has no vulnerable versions; some versions contain vulnerable kernel:util-linux. Its latest version (2.41.2+0) has components: {util-linux = "2.41.2"}
    • Libmount_jll has no vulnerable versions; some versions contain vulnerable kernel:util-linux. Its latest version (2.41.2+0) has components: {util-linux = "2.41.2"}
  • CVE-2003-0094 for packages: util_linux_jll
    • util_linux_jll computed ["< 2.39.3+0"]. Its latest version (2.41.2+0) has components: {util-linux = "2.41.2"}
    • Libuuid_jll has no vulnerable versions; some versions contain vulnerable andries_brouwer:util-linux. Its latest version (2.41.2+0) has components: {util-linux = "2.41.2"}
    • Libmount_jll has no vulnerable versions; some versions contain vulnerable andries_brouwer:util-linux. Its latest version (2.41.2+0) has components: {util-linux = "2.41.2"}
  • CVE-2004-0080 for packages: util_linux_jll
    • util_linux_jll computed ["< 2.39.3+0"]. Its latest version (2.41.2+0) has components: {util-linux = "2.41.2"}
    • Libuuid_jll has no vulnerable versions; some versions contain vulnerable andries_brouwer:util-linux. Its latest version (2.41.2+0) has components: {util-linux = "2.41.2"}
    • Libmount_jll has no vulnerable versions; some versions contain vulnerable andries_brouwer:util-linux. Its latest version (2.41.2+0) has components: {util-linux = "2.41.2"}
  • CVE-2005-2876 for packages: util_linux_jll
    • util_linux_jll computed ["< 2.39.3+0"]. Its latest version (2.41.2+0) has components: {util-linux = "2.41.2"}
    • Libuuid_jll has no vulnerable versions; some versions contain vulnerable andries_brouwer:util-linux. Its latest version (2.41.2+0) has components: {util-linux = "2.41.2"}
    • Libmount_jll has no vulnerable versions; some versions contain vulnerable andries_brouwer:util-linux. Its latest version (2.41.2+0) has components: {util-linux = "2.41.2"}
  • CVE-2006-7108 for packages: util_linux_jll
    • util_linux_jll computed ["< 2.39.3+0"]. Its latest version (2.41.2+0) has components: {util-linux = "2.41.2"}
    • Libuuid_jll has no vulnerable versions; some versions contain vulnerable andries_brouwer:util-linux. Its latest version (2.41.2+0) has components: {util-linux = "2.41.2"}
    • Libmount_jll has no vulnerable versions; some versions contain vulnerable andries_brouwer:util-linux. Its latest version (2.41.2+0) has components: {util-linux = "2.41.2"}
  • CVE-2007-5191 for packages: util_linux_jll
    • util_linux_jll computed ["< 2.39.3+0"]. Its latest version (2.41.2+0) has components: {util-linux = "2.41.2"}
    • Libuuid_jll has no vulnerable versions; some versions contain vulnerable kernel:util-linux. Its latest version (2.41.2+0) has components: {util-linux = "2.41.2"}
    • Libmount_jll has no vulnerable versions; some versions contain vulnerable kernel:util-linux. Its latest version (2.41.2+0) has components: {util-linux = "2.41.2"}
  • CVE-2013-0157 for packages: util_linux_jll
    • util_linux_jll computed ["< 2.39.3+0"]. Its latest version (2.41.2+0) has components: {util-linux = "2.41.2"}
    • Libuuid_jll has no vulnerable versions; some versions contain vulnerable kernel:util-linux. Its latest version (2.41.2+0) has components: {util-linux = "2.41.2"}
    • Libmount_jll has no vulnerable versions; some versions contain vulnerable kernel:util-linux. Its latest version (2.41.2+0) has components: {util-linux = "2.41.2"}
  • CVE-2014-9114 for packages: util_linux_jll
    • util_linux_jll computed ["< 2.39.3+0"]. Its latest version (2.41.2+0) has components: {util-linux = "2.41.2"}
    • Libuuid_jll has no vulnerable versions; some versions contain vulnerable kernel:util-linux. Its latest version (2.41.2+0) has components: {util-linux = "2.41.2"}
    • Libmount_jll has no vulnerable versions; some versions contain vulnerable kernel:util-linux. Its latest version (2.41.2+0) has components: {util-linux = "2.41.2"}
  • CVE-2015-5218 for packages: util_linux_jll
    • util_linux_jll computed ["< 2.39.3+0"]. Its latest version (2.41.2+0) has components: {util-linux = "2.41.2"}
    • Libuuid_jll has no vulnerable versions; some versions contain vulnerable kernel:util-linux. Its latest version (2.41.2+0) has components: {util-linux = "2.41.2"}
    • Libmount_jll has no vulnerable versions; some versions contain vulnerable kernel:util-linux. Its latest version (2.41.2+0) has components: {util-linux = "2.41.2"}
  • CVE-2015-5224 for packages: util_linux_jll
    • util_linux_jll computed ["< 2.39.3+0"]. Its latest version (2.41.2+0) has components: {util-linux = "2.41.2"}
    • Libuuid_jll has no vulnerable versions; some versions contain vulnerable kernel:util-linux. Its latest version (2.41.2+0) has components: {util-linux = "2.41.2"}
    • Libmount_jll has no vulnerable versions; some versions contain vulnerable kernel:util-linux. Its latest version (2.41.2+0) has components: {util-linux = "2.41.2"}
  • CVE-2016-2779 for packages: util_linux_jll
    • util_linux_jll computed ["< 2.39.3+0"]. Its latest version (2.41.2+0) has components: {util-linux = "2.41.2"}
    • Libuuid_jll has no vulnerable versions; some versions contain vulnerable kernel:util-linux. Its latest version (2.41.2+0) has components: {util-linux = "2.41.2"}
    • Libmount_jll has no vulnerable versions; some versions contain vulnerable kernel:util-linux. Its latest version (2.41.2+0) has components: {util-linux = "2.41.2"}
  • CVE-2016-5011 for packages: util_linux_jll
    • util_linux_jll computed ["< 2.39.3+0"]. Its latest version (2.41.2+0) has components: {util-linux = "2.41.2"}
    • Libuuid_jll has no vulnerable versions; some versions contain vulnerable kernel:util-linux. Its latest version (2.41.2+0) has components: {util-linux = "2.41.2"}
    • Libmount_jll has no vulnerable versions; some versions contain vulnerable kernel:util-linux. Its latest version (2.41.2+0) has components: {util-linux = "2.41.2"}
  • CVE-2018-7738 for packages: util_linux_jll
    • util_linux_jll computed ["< 2.39.3+0"]. Its latest version (2.41.2+0) has components: {util-linux = "2.41.2"}
    • Libuuid_jll has no vulnerable versions; some versions contain vulnerable kernel:util-linux. Its latest version (2.41.2+0) has components: {util-linux = "2.41.2"}
    • Libmount_jll has no vulnerable versions; some versions contain vulnerable kernel:util-linux. Its latest version (2.41.2+0) has components: {util-linux = "2.41.2"}
  • CVE-2020-21583 for packages: util_linux_jll
    • util_linux_jll computed ["< 2.39.3+0"]. Its latest version (2.41.2+0) has components: {util-linux = "2.41.2"}
    • Libuuid_jll has no vulnerable versions; some versions contain vulnerable kernel:util-linux. Its latest version (2.41.2+0) has components: {util-linux = "2.41.2"}
    • Libmount_jll has no vulnerable versions; some versions contain vulnerable kernel:util-linux. Its latest version (2.41.2+0) has components: {util-linux = "2.41.2"}
  • CVE-2021-37600 for packages: util_linux_jll, Libuuid_jll, and Libmount_jll
    • util_linux_jll computed ["< 2.39.3+0"]. Its latest version (2.41.2+0) has components: {util-linux = "2.41.2"}
    • Libuuid_jll computed ["< 2.39.3+0"]. Its latest version (2.41.2+0) has components: {util-linux = "2.41.2"}
    • Libmount_jll computed ["< 2.39.3+0"]. Its latest version (2.41.2+0) has components: {util-linux = "2.41.2"}
  • CVE-2021-3995 for packages: util_linux_jll, Libuuid_jll, and Libmount_jll
    • util_linux_jll computed ["< 2.39.3+0"]. Its latest version (2.41.2+0) has components: {util-linux = "2.41.2"}
    • Libuuid_jll computed ["< 2.39.3+0"]. Its latest version (2.41.2+0) has components: {util-linux = "2.41.2"}
    • Libmount_jll computed ["< 2.39.3+0"]. Its latest version (2.41.2+0) has components: {util-linux = "2.41.2"}
  • CVE-2021-3996 for packages: util_linux_jll, Libuuid_jll, and Libmount_jll
    • util_linux_jll computed ["< 2.39.3+0"]. Its latest version (2.41.2+0) has components: {util-linux = "2.41.2"}
    • Libuuid_jll computed ["< 2.39.3+0"]. Its latest version (2.41.2+0) has components: {util-linux = "2.41.2"}
    • Libmount_jll computed ["< 2.39.3+0"]. Its latest version (2.41.2+0) has components: {util-linux = "2.41.2"}
  • CVE-2022-0563 for packages: util_linux_jll, Libuuid_jll, and Libmount_jll
    • util_linux_jll computed ["< 2.39.3+0"]. Its latest version (2.41.2+0) has components: {util-linux = "2.41.2"}
    • Libuuid_jll computed ["< 2.39.3+0"]. Its latest version (2.41.2+0) has components: {util-linux = "2.41.2"}
    • Libmount_jll computed ["< 2.39.3+0"]. Its latest version (2.41.2+0) has components: {util-linux = "2.41.2"}
  • CVE-2024-28085 for packages: util_linux_jll, Libuuid_jll, and Libmount_jll
    • util_linux_jll computed ["< 2.40.1+0"]. Its latest version (2.41.2+0) has components: {util-linux = "2.41.2"}
    • Libuuid_jll computed ["< 2.40.0+0"]. Its latest version (2.41.2+0) has components: {util-linux = "2.41.2"}
    • Libmount_jll computed ["< 2.40.0+0"]. Its latest version (2.41.2+0) has components: {util-linux = "2.41.2"}

Copy link
Member

@mbauman mbauman left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Haha, don't think we need to publish an advisory from 2001.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants