[Git][security-tracker-team/security-tracker][master] Track three CVEs for uriparser
Salvatore Bonaccorso
carnil at debian.org
Tue Nov 13 10:21:14 GMT 2018
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits:
7ff242c8 by Salvatore Bonaccorso at 2018-11-13T10:20:47Z
Track three CVEs for uriparser
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -105,11 +105,14 @@ CVE-2018-19202
CVE-2018-19201
RESERVED
CVE-2018-19200 (An issue was discovered in uriparser before 0.9.0. UriCommon.c allows ...)
- TODO: check
+ - uriparser <unfixed>
+ NOTE: https://github.com/uriparser/uriparser/commit/f58c25069cf4a986fe17a80c5b38687e31feb539
CVE-2018-19199 (An issue was discovered in uriparser before 0.9.0. UriQuery.c allows an ...)
- TODO: check
+ - uriparser <unfixed>
+ NOTE: https://github.com/uriparser/uriparser/commit/f76275d4a91b28d687250525d3a0c5509bbd666f
CVE-2018-19198 (An issue was discovered in uriparser before 0.9.0. UriQuery.c allows an ...)
- TODO: check
+ - uriparser <unfixed>
+ NOTE: https://github.com/uriparser/uriparser/commit/864f5d4c127def386dd5cc926ad96934b297f04e
CVE-2018-19207 (The Van Ons WP GDPR Compliance (aka wp-gdpr-compliance) plugin before ...)
NOT-FOR-US: WordPress plugin wp-gdpr-compliance
CVE-2018-19206 (steps/mail/func.inc in Roundcube before 1.3.8 has XSS via crafted use ...)
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/7ff242c84dc59542bf98d8342d179ebb06551525
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/7ff242c84dc59542bf98d8342d179ebb06551525
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20181113/22f1babc/attachment.html>
More information about the debian-security-tracker-commits
mailing list