Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / 
security-tracker


Commits:
4bb4353c by Salvatore Bonaccorso at 2022-06-28T22:29:41+02:00
Add some new glpi issues

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -9459,7 +9459,8 @@ CVE-2022-31084 (LDAP Account Manager (LAM) is a 
webfrontend for managing entries
 CVE-2022-31083 (Parse Server is an open source backend that can be deployed to 
any inf ...)
        NOT-FOR-US: Node parse-server
 CVE-2022-31082 (GLPI is a Free Asset and IT Management Software package, Data 
center m ...)
-       TODO: check
+       - glpi <removed> (unimportant)
+       NOTE: Only supported behind an authenticated HTTP zone
 CVE-2022-31081 (HTTP::Daemon is a simple http server class written in perl. 
Versions p ...)
        TODO: check
 CVE-2022-31080
@@ -9488,7 +9489,8 @@ CVE-2022-31070 (NestJS Proxy is a NestJS module to 
decorate and proxy calls. Pri
 CVE-2022-31069 (NestJS Proxy is a NestJS module to decorate and proxy calls. 
Prior to  ...)
        NOT-FOR-US: NestJS Proxy
 CVE-2022-31068 (GLPI is a Free Asset and IT Management Software package, Data 
center m ...)
-       TODO: check
+       - glpi <removed> (unimportant)
+       NOTE: Only supported behind an authenticated HTTP zone
 CVE-2022-31067
        RESERVED
 CVE-2022-31066 (EdgeX Foundry is an open source project for building a common 
open fra ...)
@@ -9502,7 +9504,8 @@ CVE-2022-31063
 CVE-2022-31062 (### Impact A plugin public script can be used to read content 
of syste ...)
        NOT-FOR-US: GLPI plugin
 CVE-2022-31061 (GLPI is a Free Asset and IT Management Software package, Data 
center m ...)
-       TODO: check
+       - glpi <removed> (unimportant)
+       NOTE: Only supported behind an authenticated HTTP zone
 CVE-2022-31060 (Discourse is an open-source discussion platform. Prior to 
version 2.8. ...)
        NOT-FOR-US: Discourse
 CVE-2022-31059 (Discourse Calendar is a calendar plugin for Discourse, an 
open-source  ...)
@@ -9512,7 +9515,8 @@ CVE-2022-31058
 CVE-2022-31057 (Shopware is an open source e-commerce software made in 
Germany. Versio ...)
        NOT-FOR-US: Shopware
 CVE-2022-31056 (GLPI is a Free Asset and IT Management Software package, Data 
center m ...)
-       TODO: check
+       - glpi <removed> (unimportant)
+       NOTE: Only supported behind an authenticated HTTP zone
 CVE-2022-31055 (kCTF is a Kubernetes-based infrastructure for capture the flag 
(CTF) c ...)
        NOT-FOR-US: KCTF
 CVE-2022-31054 (Argo Events is an event-driven workflow automation framework 
for Kuber ...)



View it on GitLab: 
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/4bb4353c4cac53543c66dbf782a9f89899f4e4aa

-- 
View it on GitLab: 
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/4bb4353c4cac53543c66dbf782a9f89899f4e4aa
You're receiving this email because of your account on salsa.debian.org.


_______________________________________________
debian-security-tracker-commits mailing list
[email protected]
https://alioth-lists.debian.net/cgi-bin/mailman/listinfo/debian-security-tracker-commits

Reply via email to