Package: nuget
X-Debbugs-CC: t...@security.debian.org
Severity: grave
Tags: security

Hi,

The following vulnerability was published for nuget.

CVE-2019-0757[0]:
A tampering vulnerability exists in NuGet software when executed in a
Linux or Mac environment. An attacker who successfully exploited the
vulnerability could run arbitrary code in the context of the current user.

If you fix the vulnerability please also make sure to include the
CVE (Common Vulnerabilities & Exposures) id in your changelog entry.

For further information see:

[0] https://security-tracker.debian.org/tracker/CVE-2019-0757
    https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-0757

Please adjust the affected versions in the BTS as needed.

Regards,

Markus


Attachment: signature.asc
Description: OpenPGP digital signature

Reply via email to