Salvatore Bonaccorso pushed to branch master at Debian Security Tracker /
security-tracker
Commits:
2ba2f789 by Salvatore Bonaccorso at 2023-03-24T21:20:58+01:00
Add new CVEs for moodle
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -1674,19 +1674,19 @@ CVE-2023-28338 (Any request send to a Netgear Nighthawk
Wifi6 Router (RAX30)'s w
CVE-2023-28337 (When uploading a firmware image to a Netgear Nighthawk Wifi6
Router (R ...)
NOT-FOR-US: Netgear
CVE-2023-28336 (Insufficient filtering of grade report history made it
possible for te ...)
- TODO: check
+ - moodle <removed>
CVE-2023-28335 (The link to reset all templates of a database activity did not
include ...)
- TODO: check
+ - moodle <removed>
CVE-2023-28334 (Authenticated users were able to enumerate other users' names
via the ...)
- TODO: check
+ - moodle <removed>
CVE-2023-28333 (The Mustache pix helper contained a potential Mustache
injection risk ...)
- TODO: check
+ - moodle <removed>
CVE-2023-28332 (If the algebra filter was enabled but not functional (eg the
necessary ...)
- TODO: check
+ - moodle <removed>
CVE-2023-28331 (Content output by the database auto-linking filter required
additional ...)
- TODO: check
+ - moodle <removed>
CVE-2023-28330 (Insufficient sanitizing in backup resulted in an arbitrary
file read r ...)
- TODO: check
+ - moodle <removed>
CVE-2023-28329 (Insufficient validation of profile field availability
condition result ...)
- moodle <removed>
CVE-2023-28328
@@ -1708,7 +1708,7 @@ CVE-2023-1404
CVE-2023-1403
RESERVED
CVE-2023-1402 (The course participation report required additional checks to
prevent ...)
- TODO: check
+ - moodle <removed>
CVE-2023-1401
RESERVED
CVE-2023-1400
View it on GitLab:
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/2ba2f789aa3fe37c141e6dfe931877c445003a2d
--
View it on GitLab:
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/2ba2f789aa3fe37c141e6dfe931877c445003a2d
You're receiving this email because of your account on salsa.debian.org.
_______________________________________________
debian-security-tracker-commits mailing list
[email protected]
https://alioth-lists.debian.net/cgi-bin/mailman/listinfo/debian-security-tracker-commits