Thorsten Alteholz pushed to branch master at Debian Security Tracker / security-tracker
Commits: 52b064a8 by Thorsten Alteholz at 2018-06-28T22:14:21+02:00 ignore CVE-2017-12870 for simplesamlphp as in Wheezy - - - - - 1 changed file: - data/CVE/list Changes: ===================================== data/CVE/list ===================================== --- a/data/CVE/list +++ b/data/CVE/list @@ -48827,6 +48827,7 @@ CVE-2017-12871 (The aesEncrypt method in lib/SimpleSAML/Utils/Crypto.php in ...) NOTE: https://simplesamlphp.org/security/201703-02 CVE-2017-12870 (SimpleSAMLphp 1.14.12 and earlier make it easier for man-in-the-middle ...) - simplesamlphp 1.14.15-1 + [jessie] - simplesamlphp <ignored> (Minor issue mitigated by HTTPS usage, hard to backport) [wheezy] - simplesamlphp <ignored> (Minor issue mitigated by HTTPS usage, hard to backport) NOTE: https://simplesamlphp.org/security/201704-01 CVE-2017-12869 (The multiauth module in SimpleSAMLphp 1.14.13 and earlier allows ...) View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/52b064a8c3faa2a725abb6591d59410741282a92 -- View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/52b064a8c3faa2a725abb6591d59410741282a92 You're receiving this email because of your account on salsa.debian.org.
_______________________________________________ debian-security-tracker-commits mailing list debian-security-tracker-commits@alioth-lists.debian.net https://alioth-lists.debian.net/cgi-bin/mailman/listinfo/debian-security-tracker-commits