Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / 
security-tracker


Commits:
020d6873 by Salvatore Bonaccorso at 2018-11-18T07:42:00Z
Add fixed version for CVE-2017-12426/gitlab

9.5.4+dfsg-7 is the first version in unstable after the set of upstream
versions containing the fix.

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -67677,7 +67677,7 @@ CVE-2017-12427 (The ProcessMSLScript function in 
coders/msl.c in ImageMagick bef
        NOTE: ImageMagick-7: 
https://github.com/ImageMagick/ImageMagick/commit/e793eb203e5e0f91f5037aed6585e81b1e27395b
        NOTE: ImageMagick-6: 
https://github.com/ImageMagick/ImageMagick/commit/841f7b27dc88c685c61252d59b7e20e94c982456
 CVE-2017-12426 (GitLab Community Edition (CE) and Enterprise Edition (EE) 
before ...)
-       - gitlab <unfixed> (bug #872190; unimportant)
+       - gitlab 9.5.4+dfsg-7 (bug #872190; unimportant)
        NOTE: https://gitlab.com/gitlab-org/gitlab-ce/issues/35212
        NOTE: The fix for git for CVE-2017-1000117 mitgates the issue in gitlab 
itself.
        NOTE: The CVE is for the issue when importing a project via crafted SSH 
URLs,



View it on GitLab: 
https://salsa.debian.org/security-tracker-team/security-tracker/commit/020d68732423ece9bdcf9294b5ca3e6a367d83f8

-- 
View it on GitLab: 
https://salsa.debian.org/security-tracker-team/security-tracker/commit/020d68732423ece9bdcf9294b5ca3e6a367d83f8
You're receiving this email because of your account on salsa.debian.org.
_______________________________________________
debian-security-tracker-commits mailing list
[email protected]
https://alioth-lists.debian.net/cgi-bin/mailman/listinfo/debian-security-tracker-commits

Reply via email to