[Git][security-tracker-team/security-tracker][master] Add three more CVEs assigned for wordpress (for issues in 5.3.1 release)
Salvatore Bonaccorso
carnil at debian.org
Fri Dec 27 13:40:40 GMT 2019
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits:
ed6e6668 by Salvatore Bonaccorso at 2019-12-27T13:39:54Z
Add three more CVEs assigned for wordpress (for issues in 5.3.1 release)
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -1,9 +1,3 @@
-CVE-2019-20043
- RESERVED
-CVE-2019-20042
- RESERVED
-CVE-2019-20041
- RESERVED
CVE-2019-20040
RESERVED
CVE-2019-20039
@@ -1176,6 +1170,20 @@ CVE-2019-19835
RESERVED
CVE-2019-19834
RESERVED
+CVE-2019-20043
+ - wordpress <unfixed> (bug #946905)
+ NOTE: https://core.trac.wordpress.org/changeset/46893/trunk
+ NOTE: https://github.com/WordPress/wordpress-develop/commit/1d1d5be7aa94608c04516cac4238e8c22b93c1d9
+ NOTE: https://wordpress.org/news/2019/12/wordpress-5-3-1-security-and-maintenance-release/
+CVE-2019-20042
+ - wordpress <unfixed> (bug #946905)
+ NOTE: https://core.trac.wordpress.org/changeset/46894/trunk
+ NOTE: https://github.com/WordPress/wordpress-develop/commit/1f7f3f1f59567e2504f0fbebd51ccf004b3ccb1d
+ NOTE: https://wordpress.org/news/2019/12/wordpress-5-3-1-security-and-maintenance-release/
+CVE-2019-20041
+ - wordpress <unfixed> (bug #946905)
+ NOTE: https://github.com/WordPress/wordpress-develop/commit/b1975463dd995da19bb40d3fa0786498717e3c53
+ NOTE: https://wordpress.org/news/2019/12/wordpress-5-3-1-security-and-maintenance-release/
CVE-2019-16781 (In WordPress before 5.3.1, authenticated users with lower privileges ( ...)
- wordpress <unfixed> (bug #946905)
NOTE: https://github.com/WordPress/wordpress-develop/security/advisories/GHSA-pg4x-64rh-3c9v
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/ed6e6668a03d4be306b98b5fc7e386936fe57f1e
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/ed6e6668a03d4be306b98b5fc7e386936fe57f1e
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20191227/fcd3a0be/attachment.html>
More information about the debian-security-tracker-commits
mailing list