[Git][security-tracker-team/security-tracker][master] Update status for CVE-2015-5638/h2o

Salvatore Bonaccorso carnil at debian.org
Sun Jul 29 05:13:08 BST 2018


Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
849a58c5 by Salvatore Bonaccorso at 2018-07-29T04:12:49Z
Update status for CVE-2015-5638/h2o

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
--- a/data/CVE/list
+++ b/data/CVE/list
@@ -130355,7 +130355,8 @@ CVE-2015-5640 (baserCMS before 3.0.8 allows remote authenticated users to modify
 CVE-2015-5639 (niconico App for iOS before 6.38 does not verify SSL certificates ...)
 	NOT-FOR-US: niconico App for iOS
 CVE-2015-5638 (Directory traversal vulnerability in H2O before 1.4.5 and 1.5.x before ...)
-	NOT-FOR-US: H2O
+	- h2o <not-affected> (Fixed before initial upload to Debian)
+	NOTE: https://github.com/h2o/h2o/issues/921
 CVE-2015-5637 (The Newphoria Photon application before 1.2 for Android allows ...)
 	NOT-FOR-US: Newphoria
 CVE-2015-5636 (The Newphoria Reversi application before 1.0.3 for Android and before ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/849a58c55b816f071aee7b8b4a57cce16de8ba06

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/849a58c55b816f071aee7b8b4a57cce16de8ba06
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20180729/1cee5e8c/attachment.html>


More information about the debian-security-tracker-commits mailing list