Salvatore Bonaccorso pushed to branch master at Debian Security Tracker /
security-tracker
Commits:
505ea485 by Salvatore Bonaccorso at 2019-12-21T22:22:45Z
Mark CVE-2019-3866 as no-dsa for buster and stretch
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -52830,9 +52830,13 @@ CVE-2019-3867
NOT-FOR-US: OpenShift (web-cosnole issue specific to OpenShift only)
CVE-2019-3866 (An information-exposure vulnerability was discovered where
openstack-m ...)
- python-oslo.utils 3.41.3-1 (low; bug #946060)
+ [buster] - python-oslo.util <no-dsa> (Minor issue; can be fixed via
point release)
+ [stretch] - python-oslo.util <no-dsa> (Minor issue; can be fixed via
point release)
[jessie] - python-oslo.utils <not-affected> (regex pattern rewrite)
- python-mistral-lib <unfixed>
+ [buster] - python-mistral-lib <no-dsa> (Minor issue; can be fixed via
point release)
- mistral 5.1.0-2
+ [stretch] - mistral <no-dsa> (Minor issue; can be fixed via point
release)
NOTE: In mistral/5.0.0 the problematic code was moved to the python
library.
NOTE: To be apply the fixes in mistral/python-mistral-lib as
pre-requiste the
NOTE: python-oslo.utils package needs an update.
View it on GitLab:
https://salsa.debian.org/security-tracker-team/security-tracker/commit/505ea48581bb0683c42b9c8d6a02288d0ec8d31f
--
View it on GitLab:
https://salsa.debian.org/security-tracker-team/security-tracker/commit/505ea48581bb0683c42b9c8d6a02288d0ec8d31f
You're receiving this email because of your account on salsa.debian.org.
_______________________________________________
debian-security-tracker-commits mailing list
[email protected]
https://alioth-lists.debian.net/cgi-bin/mailman/listinfo/debian-security-tracker-commits