Salvatore Bonaccorso pushed to branch master at Debian Security Tracker /
security-tracker
Commits:
c51e9e25 by Salvatore Bonaccorso at 2019-12-15T07:50:43Z
Add reference for CVE-2019-16254
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -16134,6 +16134,7 @@ CVE-2019-16254 (Ruby through 2.4.7, 2.5.x through
2.5.6, and 2.6.x through 2.6.4
- ruby2.1 <removed>
- jruby <unfixed>
NOTE:
https://github.com/ruby/ruby/commit/3ce238b5f9795581eb84114dcfbdf4aa086bfecc
+ NOTE: https://hackerone.com/reports/331984
NOTE:
https://www.ruby-lang.org/en/news/2019/10/01/http-response-splitting-in-webrick-cve-2019-16254/
CVE-2019-16253 (The Text-to-speech Engine (aka SamsungTTS) application before
3.0.02.7 ...)
NOT-FOR-US: Samsung
View it on GitLab:
https://salsa.debian.org/security-tracker-team/security-tracker/commit/c51e9e255c4693cddf1ec61538652fe48f40c30c
--
View it on GitLab:
https://salsa.debian.org/security-tracker-team/security-tracker/commit/c51e9e255c4693cddf1ec61538652fe48f40c30c
You're receiving this email because of your account on salsa.debian.org.
_______________________________________________
debian-security-tracker-commits mailing list
[email protected]
https://alioth-lists.debian.net/cgi-bin/mailman/listinfo/debian-security-tracker-commits