Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits: 30361095 by Salvatore Bonaccorso at 2024-11-06T22:12:50+01:00 Add CVE-2024-9902/ansible - - - - - 1 changed file: - data/CVE/list Changes: ===================================== data/CVE/list ===================================== @@ -1,5 +1,13 @@ CVE-2024-9902 (A flaw was found in Ansible. The ansible-core `user` module can allow ...) - TODO: check + - ansible-core <unfixed> + - ansible 5.4.0-1 + NOTE: ansible-core was split off from src:ansible with 4.6.0-1 in experimental/5.4.0-1 in sid + NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=2318271 + NOTE: https://github.com/ansible/ansible/issues/83955 + NOTE: https://github.com/ansible/ansible/pull/83956 + NOTE: Fixed by: https://github.com/ansible/ansible/commit/0959472bc62d3fcb28200bebed6346398ca355ea + NOTE: Fixed by: https://github.com/ansible/ansible/commit/c068e45d8da7c6f5bbd3a12493047b07d77e6479 (v2.18.0rc1) + NOTE: Fixed by: https://github.com/ansible/ansible/commit/3b5a4319985e1eabe7fc0410bf8308b671f4f586 (v2.17.6rc1) CVE-2024-8615 (The JobSearch WP Job Board plugin for WordPress is vulnerable to arbit ...) NOT-FOR-US: WordPress plugin CVE-2024-8614 (The JobSearch WP Job Board plugin for WordPress is vulnerable to arbit ...) View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/3036109559d08c0e59343f0a550f585a25945e01 -- View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/3036109559d08c0e59343f0a550f585a25945e01 You're receiving this email because of your account on salsa.debian.org.
_______________________________________________ debian-security-tracker-commits mailing list [email protected] https://alioth-lists.debian.net/cgi-bin/mailman/listinfo/debian-security-tracker-commits
