[Git][security-tracker-team/security-tracker][master] Mark CVE-2019-3866 as no-dsa for buster and stretch
Salvatore Bonaccorso
carnil at debian.org
Sat Dec 21 22:23:21 GMT 2019
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits:
505ea485 by Salvatore Bonaccorso at 2019-12-21T22:22:45Z
Mark CVE-2019-3866 as no-dsa for buster and stretch
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -52830,9 +52830,13 @@ CVE-2019-3867
NOT-FOR-US: OpenShift (web-cosnole issue specific to OpenShift only)
CVE-2019-3866 (An information-exposure vulnerability was discovered where openstack-m ...)
- python-oslo.utils 3.41.3-1 (low; bug #946060)
+ [buster] - python-oslo.util <no-dsa> (Minor issue; can be fixed via point release)
+ [stretch] - python-oslo.util <no-dsa> (Minor issue; can be fixed via point release)
[jessie] - python-oslo.utils <not-affected> (regex pattern rewrite)
- python-mistral-lib <unfixed>
+ [buster] - python-mistral-lib <no-dsa> (Minor issue; can be fixed via point release)
- mistral 5.1.0-2
+ [stretch] - mistral <no-dsa> (Minor issue; can be fixed via point release)
NOTE: In mistral/5.0.0 the problematic code was moved to the python library.
NOTE: To be apply the fixes in mistral/python-mistral-lib as pre-requiste the
NOTE: python-oslo.utils package needs an update.
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/505ea48581bb0683c42b9c8d6a02288d0ec8d31f
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/505ea48581bb0683c42b9c8d6a02288d0ec8d31f
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20191221/3ae9956d/attachment.html>
More information about the debian-security-tracker-commits
mailing list