[Git][security-tracker-team/security-tracker][master] automatic update

Salvatore Bonaccorso carnil at debian.org
Mon Dec 2 08:10:45 GMT 2019



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
4140f30e by security tracker role at 2019-12-02T08:10:30Z
automatic update

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -1,3 +1,43 @@
+CVE-2019-19498
+	RESERVED
+CVE-2019-19497
+	RESERVED
+CVE-2019-19496 (Alfresco Enterprise 5.2.4 allows stored XSS via an uploaded HTML docum ...)
+	TODO: check
+CVE-2019-19495
+	RESERVED
+CVE-2019-19494
+	RESERVED
+CVE-2019-19493 (Kentico before 12.0.50 allows file uploads in which the Content-Type h ...)
+	TODO: check
+CVE-2019-19492 (FreeSWITCH 1.6.10 through 1.10.1 has a default password in event_socke ...)
+	TODO: check
+CVE-2019-19491 (TestLink 1.9.19 has XSS via the lib/testcases/archiveData.php edit par ...)
+	TODO: check
+CVE-2019-19490 (LiteManager 4.5.0 has weak permissions (Everyone: Full Control) in the ...)
+	TODO: check
+CVE-2019-19489 (SMPlayer 19.5.0 has a buffer overflow via a long .m3u file. ...)
+	TODO: check
+CVE-2019-19488
+	RESERVED
+CVE-2019-19487
+	RESERVED
+CVE-2019-19486
+	RESERVED
+CVE-2019-19485
+	RESERVED
+CVE-2019-19484
+	RESERVED
+CVE-2019-19483
+	RESERVED
+CVE-2019-19482
+	RESERVED
+CVE-2019-19481 (An issue was discovered in OpenSC through 0.19.0 and 0.20.x through 0. ...)
+	TODO: check
+CVE-2019-19480 (An issue was discovered in OpenSC through 0.19.0 and 0.20.x through 0. ...)
+	TODO: check
+CVE-2019-19479 (An issue was discovered in OpenSC through 0.19.0 and 0.20.x through 0. ...)
+	TODO: check
 CVE-2019-19478
 	RESERVED
 CVE-2019-19477
@@ -627,8 +667,8 @@ CVE-2019-19364
 	RESERVED
 CVE-2019-19363
 	RESERVED
-CVE-2019-19362
-	RESERVED
+CVE-2019-19362 (An issue was discovered in the Chat functionality of the TeamViewer de ...)
+	TODO: check
 CVE-2019-19361
 	RESERVED
 CVE-2019-19360
@@ -4670,8 +4710,8 @@ CVE-2019-18610 (An issue was discovered in manager.c in Sangoma Asterisk through
 	[stretch] - asterisk <no-dsa> (Minor issue)
 	NOTE: https://downloads.asterisk.org/pub/security/AST-2019-007.html
 	NOTE: https://issues.asterisk.org/jira/browse/ASTERISK-28580
-CVE-2019-18609
-	RESERVED
+CVE-2019-18609 (An issue was discovered in amqp_handle_input in amqp_connection.c in r ...)
+	TODO: check
 CVE-2019-18608 (Cezerin v0.33.0 allows unauthorized order-information modification bec ...)
 	NOT-FOR-US: Cezerin
 CVE-2019-18607
@@ -13499,8 +13539,8 @@ CVE-2019-15633
 	RESERVED
 CVE-2019-15632
 	RESERVED
-CVE-2019-15631
-	RESERVED
+CVE-2019-15631 (Remote Code Execution vulnerability in MuleSoft Mule CE/EE 3.x and API ...)
+	TODO: check
 CVE-2019-15630 (Directory Traversal in APIkit, HTTP connector, and OAuth2 Provider com ...)
 	NOT-FOR-US: Mulesoft
 CVE-2019-15629 (Trend Micro Password Manager versions 3.x, 5.0, and 5.1 for Android is ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/4140f30ed99b11c37353b5559fd0466ce360296c

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/4140f30ed99b11c37353b5559fd0466ce360296c
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20191202/e853b9db/attachment.html>


More information about the debian-security-tracker-commits mailing list