[Git][security-tracker-team/security-tracker][master] wordpress issues fixed in usntable via new upstream version
Salvatore Bonaccorso
carnil at debian.org
Mon Dec 17 15:38:22 GMT 2018
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits:
a2c64dea by Salvatore Bonaccorso at 2018-12-17T15:37:52Z
wordpress issues fixed in usntable via new upstream version
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -2054,27 +2054,27 @@ CVE-2019-2395
CVE-2018-20146
RESERVED
CVE-2018-20153 (In WordPress versions before 5.0.1, contributors could modify new ...)
- - wordpress <unfixed> (bug #916403)
+ - wordpress 5.0.1+dfsg1-1 (bug #916403)
NOTE: https://wordpress.org/news/2018/12/wordpress-5-0-1-security-release/
CVE-2018-20152 (In WordPress versions before 5.0.1, authors could bypass intended ...)
- - wordpress <unfixed> (bug #916403)
+ - wordpress 5.0.1+dfsg1-1 (bug #916403)
NOTE: https://wordpress.org/news/2018/12/wordpress-5-0-1-security-release/
CVE-2018-20151 (In WordPress versions before 5.0.1, the user-activation page could be ...)
- - wordpress <unfixed> (bug #916403)
+ - wordpress 5.0.1+dfsg1-1 (bug #916403)
NOTE: https://wordpress.org/news/2018/12/wordpress-5-0-1-security-release/
CVE-2018-20150 (In WordPress versions before 5.0.1, crafted URLs could trigger XSS for ...)
- - wordpress <unfixed> (bug #916403)
+ - wordpress 5.0.1+dfsg1-1 (bug #916403)
NOTE: https://wordpress.org/news/2018/12/wordpress-5-0-1-security-release/
NOTE: https://github.com/WordPress/WordPress/commit/fb3c6ea0618fcb9a51d4f2c1940e9efcd4a2d460
CVE-2018-20149 (In WordPress versions before 5.0.1, when the Apache HTTP Server is ...)
- - wordpress <unfixed> (bug #916403)
+ - wordpress 5.0.1+dfsg1-1 (bug #916403)
NOTE: https://wordpress.org/news/2018/12/wordpress-5-0-1-security-release/
NOTE: https://github.com/WordPress/WordPress/commit/246a70bdbfac3bd45ff71c7941deef1bb206b19a
CVE-2018-20148 (In WordPress versions before 5.0.1, contributors could conduct PHP ...)
- - wordpress <unfixed> (bug #916403)
+ - wordpress 5.0.1+dfsg1-1 (bug #916403)
NOTE: https://wordpress.org/news/2018/12/wordpress-5-0-1-security-release/
CVE-2018-20147 (In WordPress versions before 5.0.1, authors could modify metadata to ...)
- - wordpress <unfixed> (bug #916403)
+ - wordpress 5.0.1+dfsg1-1 (bug #916403)
NOTE: https://wordpress.org/news/2018/12/wordpress-5-0-1-security-release/
CVE-2018-20144 [Arbitrary File read in GitLab project import with Git LFS]
RESERVED
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/a2c64dea27f15a13683a0938b28530b074dfd81b
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/a2c64dea27f15a13683a0938b28530b074dfd81b
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20181217/d1a602c1/attachment.html>
More information about the debian-security-tracker-commits
mailing list