[Git][security-tracker-team/security-tracker][master] yabasic unimportant

Moritz Muehlenhoff jmm at debian.org
Thu Dec 12 16:17:32 GMT 2019



Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker


Commits:
fd6b8e3c by Moritz Muehlenhoff at 2019-12-12T16:17:11Z
yabasic unimportant

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -1264,8 +1264,9 @@ CVE-2020-2511
 CVE-2020-2510
 	RESERVED
 CVE-2019-19720 (Yabasic 2.86.1 has a heap-based buffer overflow in the yylex() functio ...)
-	- yabasic <unfixed>
+	- yabasic <unfixed> (unimportant)
 	NOTE: https://github.com/marcIhm/yabasic/issues/36
+	NOTE: Negligible security impact
 CVE-2019-19719 (Tableau Server 10.3 through 2019.4 on Windows and Linux allows XSS via ...)
 	NOT-FOR-US: Tableau Server
 CVE-2019-19718



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/fd6b8e3c121f7f5ea826a2daaf4f7c9c0a57a284

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/fd6b8e3c121f7f5ea826a2daaf4f7c9c0a57a284
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20191212/98fc675a/attachment.html>


More information about the debian-security-tracker-commits mailing list