Salvatore Bonaccorso pushed to branch master at Debian Security Tracker /
security-tracker
Commits:
84706a24 by Salvatore Bonaccorso at 2023-12-16T09:03:53+01:00
Update information for CVE-2023-5764/ansible-core
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -4798,7 +4798,7 @@ CVE-2023-40151 (When user authentication is not enabled
the shell can execute co
CVE-2023-6134 (A flaw was found in Keycloak that prevents certain schemes in
redirect ...)
NOT-FOR-US: Keycloak
CVE-2023-5764 (A template injection flaw was found in Ansible where a user's
controll ...)
- - ansible-core <unfixed> (bug #1057427)
+ - ansible-core 2.14.13-1 (bug #1057427)
[bookworm] - ansible-core <no-dsa> (Minor issue)
- ansible 5.4.0-1
[bullseye] - ansible <no-dsa> (Minor issue)
@@ -4807,6 +4807,7 @@ CVE-2023-5764 (A template injection flaw was found in
Ansible where a user's con
NOTE: https://github.com/ansible/ansible/pull/82293 (stable-2.16)
NOTE: https://github.com/ansible/ansible/pull/82294 (stable-2.15)
NOTE: https://github.com/ansible/ansible/pull/82295 (stable-2.14)
+ NOTE:
https://github.com/ansible/ansible/commit/7239d2d371bc6e274cbb7314e01431adce6ae25a
(v2.14.12rc1)
CVE-2023-41913 (strongSwan before 5.9.12 has a buffer overflow and possible
unauthenti ...)
{DSA-5560-1 DLA-3663-1}
- strongswan 5.9.12-1
View it on GitLab:
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/84706a243f49c2ad91f6e45f9d917b832314a44d
--
View it on GitLab:
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/84706a243f49c2ad91f6e45f9d917b832314a44d
You're receiving this email because of your account on salsa.debian.org.
_______________________________________________
debian-security-tracker-commits mailing list
[email protected]
https://alioth-lists.debian.net/cgi-bin/mailman/listinfo/debian-security-tracker-commits