[Secure-testing-commits] r53791 - data/CVE

Guido Guenther agx at moszumanska.debian.org
Sat Jul 22 15:49:06 UTC 2017


Author: agx
Date: 2017-07-22 15:49:05 +0000 (Sat, 22 Jul 2017)
New Revision: 53791

Modified:
   data/CVE/list
Log:
Add upstream bug for rbenv path traversal issue

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-07-22 15:26:45 UTC (rev 53790)
+++ data/CVE/list	2017-07-22 15:49:05 UTC (rev 53791)
@@ -1059,6 +1059,7 @@
 	NOT-FOR-US: ljharb
 CVE-2017-1000047 (rbenv (all current versions) is vulnerable to Directory Traversal in ...)
 	- rbenv <unfixed>
+	NOTE: https://github.com/rbenv/rbenv/issues/977
 CVE-2017-1000046 (Mautic 2.6.1 and earlier fails to set flags on session cookies ...)
 	NOT-FOR-US: Mautic
 CVE-2017-1000045 (Mautic SSO/OAuth2 plugins are vulnerable to CSRF of the state ...)




More information about the Secure-testing-commits mailing list