[Git][security-tracker-team/security-tracker][master] Do not track specific source package for CVE-2019-101031{1,2}

Salvatore Bonaccorso carnil at debian.org
Fri Jul 12 21:57:39 BST 2019



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
a5c8db67 by Salvatore Bonaccorso at 2019-07-12T20:56:20Z
Do not track specific source package for CVE-2019-101031{1,2}

They are duplicates of already CVEs assigned by MITRE for monit. DWF
seem to have assigned tose two as well for the specific commits in
monit.

Update (REJECT) of those entries requested to MITRE.

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -9467,9 +9467,9 @@ CVE-2019-1010314 (Gitea 1.7.2, 1.7.3 is affected by: Cross Site Scripting (XSS).
 CVE-2019-1010313
 	RESERVED
 CVE-2019-1010312 (Tildeslash Monit Version 5.25.2 and earlier is affected by: Buffer Ove ...)
-	TODO: check
+	NOTE: Invalid CVE, duplicate of CVE-2019-11455
 CVE-2019-1010311 (Tildeslash Monit Version 5.25.2 and earlier is affected by: Cross Site ...)
-	TODO: check
+	NOTE: Invalid CVE, duplicate of CVE-2019-11454
 CVE-2019-1010310 (GLPI GLPI Product 9.3.1 is affected by: Frame and Form tags Injection  ...)
 	TODO: check
 CVE-2019-1010309 (pacman prior to version 5.1.3 is affected by: Directory Traversal. The ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/a5c8db6713921436cb9b545327c1cd6d6446ee5f

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/a5c8db6713921436cb9b545327c1cd6d6446ee5f
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20190712/a8f2f095/attachment.html>


More information about the debian-security-tracker-commits mailing list