[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] SAML NFU

Paul Wise pabs at debian.org
Sat Mar 3 14:24:43 UTC 2018


Paul Wise pushed to branch master at Debian Security Tracker / security-tracker


Commits:
18a003d7 by Paul Wise at 2018-03-03T22:24:27+08:00
SAML NFU

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
--- a/data/CVE/list
+++ b/data/CVE/list
@@ -916,6 +916,10 @@ CVE-2017-6927 (Drupal 8.4.x versions before 8.4.5 and Drupal 7.x versions before
 	NOTE: https://www.drupal.org/sa-core-2018-001
 CVE-2018-7338
 	RESERVED
+	NOT-FOR-US: Duo Network Gateway
+	NOTE: https://duo.com/labs/psa/duo-psa-2017-003
+	NOTE: https://duo.com/blog/duo-finds-saml-vulnerabilities-affecting-multiple-implementations
+	NOTE: https://www.kb.cert.org/vuls/id/475445
 CVE-2018-7337 (In Wireshark 2.4.0 to 2.4.4, the DOCSIS protocol dissector could crash. ...)
 	- wireshark 2.4.5-1
 	NOTE: https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=14446



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/18a003d799e9dfe75b1c143d51c190828b4dbe4f

---
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/18a003d799e9dfe75b1c143d51c190828b4dbe4f
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.alioth.debian.org/pipermail/secure-testing-commits/attachments/20180303/4eb7b8a9/attachment.html>


More information about the Secure-testing-commits mailing list