Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker
Commits: dc1061f4 by Moritz Muehlenhoff at 2021-04-09T09:10:53+02:00 new ruby, podofo, binutils, glpi issues (concludes external check) - - - - - 1 changed file: - data/CVE/list Changes: ===================================== data/CVE/list ===================================== @@ -1,3 +1,11 @@ +CVE-2021-3487 + - binutils <unfixed> (unimportant) + NOTE: https://sourceware.org/bugzilla/show_bug.cgi?id=26946 + NOTE: https://sourceware.org/git/gitweb.cgi?p=binutils-gdb.git;h=647cebce12a6b0a26960220caff96ff38978cf24 + NOTE: binutils not covered by security support +CVE-2021-3486 + - glpi <removed> + NOTE: https://github.com/Kitsun3Sec/exploits/tree/master/cms/GLPI/GLPI-stored-XSS CVE-2021-30475 RESERVED CVE-2021-30474 @@ -6,12 +14,20 @@ CVE-2021-30473 RESERVED CVE-2021-30472 RESERVED + - libpodofo <unfixed> + NOTE: https://sourceforge.net/p/podofo/tickets/132/ CVE-2021-30471 RESERVED + - libpodofo <unfixed> + NOTE: https://sourceforge.net/p/podofo/tickets/131/ CVE-2021-30470 RESERVED + - libpodofo <unfixed> + NOTE: https://sourceforge.net/p/podofo/tickets/130/ CVE-2021-30469 RESERVED + - libpodofo <unfixed> + NOTE: https://sourceforge.net/p/podofo/tickets/129/ CVE-2021-30468 RESERVED CVE-2021-30467 @@ -3309,6 +3325,10 @@ CVE-2021-28966 RESERVED CVE-2021-28965 RESERVED + - ruby2.7 <unfixed> + - ruby2.5 <removed> + - ruby2.3 <removed> + NOTE: https://www.ruby-lang.org/en/news/2021/04/05/xml-round-trip-vulnerability-in-rexml-cve-2021-28965/ CVE-2021-28972 (In drivers/pci/hotplug/rpadlpar_sysfs.c in the Linux kernel through 5. ...) - linux 5.10.26-1 [stretch] - linux <ignored> (Driver is specific to IBM Power systems) View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/dc1061f47b3197820fa5af6b2da2061704b927b5 -- View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/dc1061f47b3197820fa5af6b2da2061704b927b5 You're receiving this email because of your account on salsa.debian.org.
_______________________________________________ debian-security-tracker-commits mailing list [email protected] https://alioth-lists.debian.net/cgi-bin/mailman/listinfo/debian-security-tracker-commits
