Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits: 6e8382bc by Salvatore Bonaccorso at 2019-12-24T21:31:51Z Add CVE-2019-19956/libxml2 Mark the issue as minor and no-dsa for buster and stretch. - - - - - 1 changed file: - data/CVE/list Changes: ===================================== data/CVE/list ===================================== @@ -1,5 +1,10 @@ CVE-2019-19956 (xmlParseBalancedChunkMemoryRecover in parser.c in libxml2 before 2.9.1 ...) - TODO: check + [experimental] - libxml2 2.9.10+dfsg-1 + - libxml2 <unfixed> + [buster] - libxml2 <no-dsa> (Minor issue) + [stretch] - libxml2 <no-dsa> (Minor issue) + NOTE: https://gitlab.gnome.org/GNOME/libxml2/issues/82 + NOTE: https://gitlab.gnome.org/GNOME/libxml2/commit/5a02583c7e683896d84878bd90641d8d9b0d0549 (v2.9.10-rc1) CVE-2019-19955 RESERVED CVE-2019-19954 (Signal Desktop before 1.29.1 on Windows allows local users to gain pri ...) View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/6e8382bcfd6c2cf928a2277c67cd262d1351a152 -- View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/6e8382bcfd6c2cf928a2277c67cd262d1351a152 You're receiving this email because of your account on salsa.debian.org.
_______________________________________________ debian-security-tracker-commits mailing list [email protected] https://alioth-lists.debian.net/cgi-bin/mailman/listinfo/debian-security-tracker-commits
