Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / 
security-tracker


Commits:
210d2b27 by Salvatore Bonaccorso at 2025-01-14T21:49:16+01:00
Add CVE-2024-53263/git-lfs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -447,7 +447,9 @@ CVE-2024-53563 (A stored cross-site scripting (XSS) 
vulnerability in Arcadyan Me
 CVE-2024-53561 (A remote code execution (RCE) vulnerability in Arcadyan Meteor 
2 CPE F ...)
        TODO: check
 CVE-2024-53263 (Git LFS is a Git extension for versioning large files. When 
Git LFS re ...)
-       TODO: check
+       - git-lfs <unfixed>
+       NOTE: 
https://github.com/git-lfs/git-lfs/security/advisories/GHSA-q6r2-x2cc-vrp7
+       NOTE: Fixed by: 
https://github.com/git-lfs/git-lfs/commit/0345b6f816e611d050c0df67b61f0022916a1c90
 (v3.6.1)
 CVE-2024-52969 (An Improper Neutralization of Special Elements used in an SQL 
Command  ...)
        NOT-FOR-US: FortiGuard
 CVE-2024-52967 (An improper neutralization of script-related html tags in a 
web page ( ...)



View it on GitLab: 
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/210d2b279f9b18adb1b5e99a0851a5fa8d718e93

-- 
View it on GitLab: 
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/210d2b279f9b18adb1b5e99a0851a5fa8d718e93
You're receiving this email because of your account on salsa.debian.org.


_______________________________________________
debian-security-tracker-commits mailing list
[email protected]
https://alioth-lists.debian.net/cgi-bin/mailman/listinfo/debian-security-tracker-commits

Reply via email to