Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / 
security-tracker


Commits:
84706a24 by Salvatore Bonaccorso at 2023-12-16T09:03:53+01:00
Update information for CVE-2023-5764/ansible-core

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -4798,7 +4798,7 @@ CVE-2023-40151 (When user authentication is not enabled 
the shell can execute co
 CVE-2023-6134 (A flaw was found in Keycloak that prevents certain schemes in 
redirect ...)
        NOT-FOR-US: Keycloak
 CVE-2023-5764 (A template injection flaw was found in Ansible where a user's 
controll ...)
-       - ansible-core <unfixed> (bug #1057427)
+       - ansible-core 2.14.13-1 (bug #1057427)
        [bookworm] - ansible-core <no-dsa> (Minor issue)
        - ansible 5.4.0-1
        [bullseye] - ansible <no-dsa> (Minor issue)
@@ -4807,6 +4807,7 @@ CVE-2023-5764 (A template injection flaw was found in 
Ansible where a user's con
        NOTE: https://github.com/ansible/ansible/pull/82293 (stable-2.16)
        NOTE: https://github.com/ansible/ansible/pull/82294 (stable-2.15)
        NOTE: https://github.com/ansible/ansible/pull/82295 (stable-2.14)
+       NOTE: 
https://github.com/ansible/ansible/commit/7239d2d371bc6e274cbb7314e01431adce6ae25a
 (v2.14.12rc1)
 CVE-2023-41913 (strongSwan before 5.9.12 has a buffer overflow and possible 
unauthenti ...)
        {DSA-5560-1 DLA-3663-1}
        - strongswan 5.9.12-1



View it on GitLab: 
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/84706a243f49c2ad91f6e45f9d917b832314a44d

-- 
View it on GitLab: 
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/84706a243f49c2ad91f6e45f9d917b832314a44d
You're receiving this email because of your account on salsa.debian.org.


_______________________________________________
debian-security-tracker-commits mailing list
[email protected]
https://alioth-lists.debian.net/cgi-bin/mailman/listinfo/debian-security-tracker-commits

Reply via email to