Salvatore Bonaccorso pushed to branch master at Debian Security Tracker /
security-tracker
Commits:
0ce7abbe by Salvatore Bonaccorso at 2020-08-05T22:28:11+02:00
Add Debian bug references for golang-github-unknwon-cae issues
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -25035,7 +25035,7 @@ CVE-2020-7670 (agoo through 2.12.3 allows request
smuggling attacks where agoo i
CVE-2020-7669
RESERVED
CVE-2020-7668 (In all versions of the package github.com/unknwon/cae/tz, the
ExtractT ...)
- - golang-github-unknwon-cae <unfixed>
+ - golang-github-unknwon-cae <unfixed> (bug #967956)
NOTE: https://snyk.io/vuln/SNYK-GOLANG-GITHUBCOMUNKNWONCAETZ-570384
CVE-2020-7667 (In package github.com/sassoftware/go-rpmutils/cpio before
version 0.1. ...)
NOT-FOR-US: github.com/sassoftware/go-rpmutils/cpio go module
@@ -25044,7 +25044,7 @@ CVE-2020-7666
CVE-2020-7665
RESERVED
CVE-2020-7664 (In all versions of the package github.com/unknwon/cae/zip, the
Extract ...)
- - golang-github-unknwon-cae <unfixed>
+ - golang-github-unknwon-cae <unfixed> (bug #967955)
NOTE: https://snyk.io/vuln/SNYK-GOLANG-GITHUBCOMUNKNWONCAEZIP-570383
CVE-2020-7663 (websocket-extensions ruby module prior to 0.1.5 allows Denial
of Servi ...)
- ruby-websocket-extensions <unfixed> (bug #964274)
View it on GitLab:
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/0ce7abbeb721f158c77499d9f4f7dfe478340df3
--
View it on GitLab:
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/0ce7abbeb721f158c77499d9f4f7dfe478340df3
You're receiving this email because of your account on salsa.debian.org.
_______________________________________________
debian-security-tracker-commits mailing list
[email protected]
https://alioth-lists.debian.net/cgi-bin/mailman/listinfo/debian-security-tracker-commits