[Git][security-tracker-team/security-tracker][master] 2 commits: Add CVE-2019-13161/asterisk

Salvatore Bonaccorso carnil at debian.org
Sat Jul 13 12:15:59 BST 2019



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
29b4680a by Salvatore Bonaccorso at 2019-07-13T08:47:31Z
Add CVE-2019-13161/asterisk

- - - - -
1eba29fd by Salvatore Bonaccorso at 2019-07-13T08:48:02Z
Add CVE-2019-12827/asterisk

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -955,7 +955,9 @@ CVE-2019-13163
 CVE-2019-13162
 	RESERVED
 CVE-2019-13161 (An issue was discovered in Asterisk Open Source through 13.27.0, 14.x  ...)
-	TODO: check
+	- asterisk <unfixed>
+	NOTE: http://downloads.digium.com/pub/security/AST-2019-003.html
+	NOTE: https://issues.asterisk.org/jira/browse/ASTERISK-28465
 CVE-2019-13160
 	RESERVED
 CVE-2019-13159
@@ -1839,7 +1841,9 @@ CVE-2019-12829 (radare2 through 3.5.1 mishandles the RParse API, which allows re
 CVE-2019-12828 (An issue was discovered in Electronic Arts Origin before 10.5.39. Due  ...)
 	NOT-FOR-US: Electronic Arts Origin
 CVE-2019-12827 (Buffer overflow in res_pjsip_messaging in Digium Asterisk versions 13. ...)
-	TODO: check
+	- asterisk <unfixed>
+	NOTE: https://downloads.asterisk.org/pub/security/AST-2019-002.html
+	NOTE: https://issues.asterisk.org/jira/browse/ASTERISK-28447
 CVE-2019-12826 (A Cross-Site-Request-Forgery (CSRF) vulnerability in widget_logic.php  ...)
 	NOT-FOR-US: 2by2host Widget Logic plugin for WordPress
 CVE-2019-12825



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/compare/c5018a9c4259d4f87fcfbe34f2c9f87d3ab635ef...1eba29fdef8638c1921b36219b08f9b9b260422f

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/compare/c5018a9c4259d4f87fcfbe34f2c9f87d3ab635ef...1eba29fdef8638c1921b36219b08f9b9b260422f
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20190713/6139e24a/attachment.html>


More information about the debian-security-tracker-commits mailing list