[Git][security-tracker-team/security-tracker][master] 2 commits: CVE-2019-11358/jquery assigned
Salvatore Bonaccorso
carnil at debian.org
Sat Apr 20 06:59:34 BST 2019
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits:
023c5a98 by Salvatore Bonaccorso at 2019-04-20T05:57:41Z
CVE-2019-11358/jquery assigned
Same CVE as well used for the drupal issue and others (e.g. backdrop
CMS).
- - - - -
ed816c29 by Salvatore Bonaccorso at 2019-04-20T05:58:40Z
Track CVE for the jquery for the stretch-pu update
- - - - -
2 changed files:
- data/CVE/list
- data/next-point-update.txt
Changes:
=====================================
data/CVE/list
=====================================
@@ -161,7 +161,7 @@ CVE-2019-11269
RESERVED
CVE-2019-11268
RESERVED
-CVE-2019-XXXX [Cross Site Scripting - SA-CORE-2019-006 / Object.prototype pollution in jQuery]
+CVE-2019-11358 [Cross Site Scripting - SA-CORE-2019-006 / Object.prototype pollution in jQuery]
- drupal7 <removed> (bug #927330)
- jquery 3.3.1~dfsg-2 (bug #927385)
[stretch] - jquery <no-dsa> (Minor issue; can be fixed via point release)
=====================================
data/next-point-update.txt
=====================================
@@ -191,6 +191,5 @@ CVE-2018-16476
[stretch] - rails 2:4.2.7.1-1+deb9u1
CVE-2017-16129
[stretch] - node-superagent 0.20.0+dfsg-1+deb9u1
-CVE-2019-XXXX
+CVE-2019-11358
[stretch] - jquery 3.1.1-2+deb9u1
- NOTE: For #927385
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/compare/ef355825364d5c5a6e45f6f00934376b2fcc8a08...ed816c29762ecbc86610b0ef13946e545b7f607c
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/compare/ef355825364d5c5a6e45f6f00934376b2fcc8a08...ed816c29762ecbc86610b0ef13946e545b7f607c
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20190420/f136e36e/attachment.html>
More information about the debian-security-tracker-commits
mailing list