Salvatore Bonaccorso pushed to branch master at Debian Security Tracker /
security-tracker
Commits:
47d2b3f9 by Salvatore Bonaccorso at 2020-11-30T21:25:47+01:00
Add CVE-2020-12695/minidlna
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -40615,10 +40615,12 @@ CVE-2020-12695 (The Open Connectivity Foundation UPnP
specification before 2020-
[buster] - wpa <no-dsa> (Minor issue)
- gupnp 1.2.3-1
[buster] - gupnp 1.0.5-0+deb10u1
+ - minidlna <unfixed>
NOTE:
https://w1.fi/security/2020-1/upnp-subscribe-misbehavior-wps-ap.txt
NOTE:
https://w1.fi/security/2020-1/0001-WPS-UPnP-Do-not-allow-event-subscriptions-with-URLs-.patch
NOTE:
https://w1.fi/security/2020-1/0002-WPS-UPnP-Fix-event-message-generation-using-a-long-U.patch
NOTE:
https://w1.fi/security/2020-1/0003-WPS-UPnP-Handle-HTTP-initiation-failures-for-events-.patch
+ NOTE:
https://sourceforge.net/p/minidlna/git/ci/06ee114731612462eb1eb1266f0431ccf59269d2
(v1_3_0)
CVE-2020-12694
RESERVED
CVE-2020-12693 (Slurm 19.05.x before 19.05.7 and 20.02.x before 20.02.3, in
the rare c ...)
View it on GitLab:
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/47d2b3f9bea09f70d2c02b8cf5acbcd12078a5c2
--
View it on GitLab:
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/47d2b3f9bea09f70d2c02b8cf5acbcd12078a5c2
You're receiving this email because of your account on salsa.debian.org.
_______________________________________________
debian-security-tracker-commits mailing list
[email protected]
https://alioth-lists.debian.net/cgi-bin/mailman/listinfo/debian-security-tracker-commits