[Git][security-tracker-team/security-tracker][master] Track pydio issues (associate for now tih ajaxplorer itp)
Salvatore Bonaccorso
carnil at debian.org
Tue Jul 24 06:04:29 BST 2018
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits:
c82b3cb5 by Salvatore Bonaccorso at 2018-07-24T07:03:12+02:00
Track pydio issues (associate for now tih ajaxplorer itp)
There is not explicit ITP for pydio, but pydio is the ajaxplorer which
had a itp. Track it for now under the same source package in case it
gets packages (although unlikely since the RFP/ITP has no progress).
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
--- a/data/CVE/list
+++ b/data/CVE/list
@@ -10,11 +10,11 @@ CVE-2018-1999020 (Open Networking Foundation (ONF) ONOS version 1.13.2 and earli
CVE-2018-1999019 (Chamilo LMS version 11.x contains an Unserialization vulnerability in ...)
NOT-FOR-US: Chamilo LMS
CVE-2018-1999018 (Pydio version 8.2.1 and prior contains an Unvalidated user input ...)
- TODO: check
+ - ajaxplorer <itp> (bug #668381)
CVE-2018-1999017 (Pydio version 8.2.0 and earlier contains a Server-Side Request Forgery ...)
- TODO: check
+ - ajaxplorer <itp> (bug #668381)
CVE-2018-1999016 (Pydio version 8.2.0 and earlier contains a Cross Site Scripting (XSS) ...)
- TODO: check
+ - ajaxplorer <itp> (bug #668381)
CVE-2018-1999015 (FFmpeg before commit 5aba5b89d0b1d73164d3b81764828bb8b20ff32a contains ...)
- ffmpeg <unfixed>
- libav <undetermined>
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/c82b3cb5a6d9fe3753e37966157e514c8b1aca48
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/c82b3cb5a6d9fe3753e37966157e514c8b1aca48
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20180724/660b1e51/attachment.html>
More information about the debian-security-tracker-commits
mailing list