Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / 
security-tracker


Commits:
136fda2d by Moritz Muehlenhoff at 2024-04-16T12:43:29+02:00
new gunicorn issue

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -99,7 +99,9 @@ CVE-2024-1456 (An S3 bucket takeover vulnerability was 
identified in the h2oai/h
 CVE-2024-1183 (An SSRF (Server-Side Request Forgery) vulnerability exists in 
the grad ...)
        NOT-FOR-US: Gradio
 CVE-2024-1135 (Gunicorn fails to properly validate Transfer-Encoding headers, 
leading ...)
-       TODO: check
+       - gunicorn <unfixed>
+       NOTE: https://huntr.com/bounties/22158e34-cfd5-41ad-97e0-a780773d96c1
+       NOTE: 
https://github.com/benoitc/gunicorn/commit/ac29c9b0a758d21f1e0fb3b3457239e523fa9f1d
 CVE-2024-0549 (mintplex-labs/anything-llm is vulnerable to a relative path 
traversal  ...)
        NOT-FOR-US: mintplex-labs/anything-llm
 CVE-2024-0404 (A mass assignment vulnerability exists in the 
`/api/invite/:code` endp ...)
@@ -25746,6 +25748,7 @@ CVE-2023-6270 (A flaw was found in the ATA over 
Ethernet (AoE) driver in the Lin
        - linux <unfixed>
        [bookworm] - linux 6.1.82-1
        NOTE: https://www.zerodayinitiative.com/advisories/ZDI-CAN-22236
+       NOTE: https://git.kernel.org/f98364e926626c678fb4b9004b75cacf92ff0662 
(6.9-rc1)
 CVE-2023-5619
        REJECTED
 CVE-2023-5442



View it on GitLab: 
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/136fda2d6ce9df0dd73087121a8ac047cd5430c5

-- 
View it on GitLab: 
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/136fda2d6ce9df0dd73087121a8ac047cd5430c5
You're receiving this email because of your account on salsa.debian.org.


_______________________________________________
debian-security-tracker-commits mailing list
[email protected]
https://alioth-lists.debian.net/cgi-bin/mailman/listinfo/debian-security-tracker-commits

Reply via email to