Markus Koschany pushed to branch master at Debian Security Tracker /
security-tracker
Commits:
a3ab3148 by Markus Koschany at 2019-11-23T13:15:08Z
CVE-2019-18622,phpmyadmin: Mark as not affected for stable and oldstable
releases
According to Debian's maintainer, William Desportes, Buster, Stretch and
Jessie
are not vulnerable. Only unstable is currently affected.
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -3593,6 +3593,9 @@ CVE-2019-18623 (Escalation of privileges in EnergyCAP 7
through 7.5.6 allows an
NOT-FOR-US: EnergyCAP
CVE-2019-18622 (An issue was discovered in phpMyAdmin before 4.9.2. A crafted
database ...)
- phpmyadmin <unfixed> (bug #945349)
+ [buster] - phpmyadmin <not-affected> (vulnerable code is not present)
+ [stretch] - phpmyadmin <not-affected> (vulnerable code is not present)
+ [jessie] - phpmyadmin <not-affected> (vulnerable code is not present)
NOTE:
https://github.com/phpmyadmin/phpmyadmin/commit/ff541af95d7155d8dd326f331b5e248fea8e7111
NOTE: https://www.phpmyadmin.net/security/PMASA-2019-5/
CVE-2019-18621
View it on GitLab:
https://salsa.debian.org/security-tracker-team/security-tracker/commit/a3ab31489cdea283020bd0b77f05067eedbcfb53
--
View it on GitLab:
https://salsa.debian.org/security-tracker-team/security-tracker/commit/a3ab31489cdea283020bd0b77f05067eedbcfb53
You're receiving this email because of your account on salsa.debian.org.
_______________________________________________
debian-security-tracker-commits mailing list
[email protected]
https://alioth-lists.debian.net/cgi-bin/mailman/listinfo/debian-security-tracker-commits