Ola Lundqvist pushed to branch master at Debian Security Tracker /
security-tracker
Commits:
e7a6861d by Ola Lundqvist at 2020-04-01T21:48:21+02:00
Ignoring CVE-2020-1927 and CVE-2020-1934 for apache2 following decision for
later releases.
- - - - -
f7642fd0 by Ola Lundqvist at 2020-04-01T21:50:28+02:00
Ignoring CVE-2019-15522 for csync2 following decision for later releases.
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -23362,6 +23362,7 @@ CVE-2020-1934
- apache2 2.4.43-1 (low)
[buster] - apache2 <no-dsa> (Minor issue)
[stretch] - apache2 <no-dsa> (Minor issue)
+ [jessie] - apache2 <ignored> (Minor issue)
NOTE:
https://httpd.apache.org/security/vulnerabilities_24.html#CVE-2020-1934
CVE-2020-1933 (A XSS vulnerability was found in Apache NiFi 1.0.0 to 1.10.0.
Maliciou ...)
NOT-FOR-US: Apache NiFi
@@ -23388,6 +23389,7 @@ CVE-2020-1927
- apache2 2.4.43-1 (low)
[buster] - apache2 <no-dsa> (Minor issue)
[stretch] - apache2 <no-dsa> (Minor issue)
+ [jessie] - apache2 <ignored> (Minor issue)
NOTE:
https://httpd.apache.org/security/vulnerabilities_24.html#CVE-2020-1927
CVE-2020-1926
RESERVED
@@ -38163,6 +38165,7 @@ CVE-2019-15522 (An issue was discovered in LINBIT
csync2 through 2.0. csync_daem
- csync2 <unfixed> (bug #955445)
[buster] - csync2 <no-dsa> (Minor issue)
[stretch] - csync2 <no-dsa> (Minor issue)
+ [jessie] - csync2 <no-dsa> (Minor issue)
NOTE:
https://github.com/LINBIT/csync2/pull/13/commits/0ecfc333da51575f188dd7cf6ac4974d13a800b1
CVE-2019-15521 (Spoon Library through 2014-02-06, as used in Fork CMS before
1.4.1 and ...)
NOT-FOR-US: Spoon Library
View it on GitLab:
https://salsa.debian.org/security-tracker-team/security-tracker/-/compare/c0c09f1a9480f7522ee4c04390eb30c66006046e...f7642fd02b927caa1273eb2c326487059f3f6c7b
--
View it on GitLab:
https://salsa.debian.org/security-tracker-team/security-tracker/-/compare/c0c09f1a9480f7522ee4c04390eb30c66006046e...f7642fd02b927caa1273eb2c326487059f3f6c7b
You're receiving this email because of your account on salsa.debian.org.
_______________________________________________
debian-security-tracker-commits mailing list
[email protected]
https://alioth-lists.debian.net/cgi-bin/mailman/listinfo/debian-security-tracker-commits