Skip to content
New issue

Have a question about this project? # for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “#”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? # to your account

CVE-2024-22641 #724

Open
mmuehlenhoff opened this issue May 29, 2024 · 9 comments
Open

CVE-2024-22641 #724

mmuehlenhoff opened this issue May 29, 2024 · 9 comments

Comments

@mmuehlenhoff
Copy link

This appeared in the CVE feed, it doesn't seem like it was ever reported to you though?
https://github.com/zunak/CVE-2024-22641

(From: https://www.cve.org/CVERecord?id=CVE-2024-22641)

@williamdes
Copy link
Contributor

05f3a28

typo CVE in commit name

Ref: #712

@carnil
Copy link

carnil commented May 29, 2024

Note, that there are two distinct reports:

https://github.com/zunak/CVE-2024-22641 and
https://github.com/zunak/CVE-2024-22640

@williamdes
Copy link
Contributor

Thank you @carnil
What a mess, no upstream coordination

@rbro
Copy link

rbro commented Jun 28, 2024

Has CVE-2024-22641 been fixed too, or is it still pending?

@zolthan
Copy link

zolthan commented Aug 7, 2024

Still no new version for fixing this issue?

@glennmcewan
Copy link

Is there any update on this please? We're also seeing that Snyk still complains about this as being an open CVE: https://security.snyk.io/vuln/SNYK-PHP-TECNICKCOMTCPDF-7165692

@williamdes
Copy link
Contributor

@nicolaasuni can you address this one before the next release ?

@nicolaasuni
Copy link
Member

This should be sorted now.
Can you please verify?

@williamdes
Copy link
Contributor

Ref 17fe959

# for free to join this conversation on GitHub. Already have an account? # to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

7 participants