[Git][security-tracker-team/security-tracker][master] Update information on CVE-2019-5827/sqlite3

Salvatore Bonaccorso carnil at debian.org
Thu Jun 13 16:25:46 BST 2019



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
2f869de3 by Salvatore Bonaccorso at 2019-06-13T15:24:12Z
Update information on CVE-2019-5827/sqlite3

Track upstream commits https://www.sqlite.org/src/info/07ee06fd390bfebe
and https://www.sqlite.org/src/info/0b6ae032c28e7fe3 as fixed for
CVE-2019-5827/sqlite3.

Update fixed version for unstable to 3.27.2-3.

The issue seems to not be possible to directly trigger in sqlite3, so
it's most relevant for chromium and might just be no-dsa for older
suites.

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -18172,8 +18172,9 @@ CVE-2019-5828
 CVE-2019-5827
 	RESERVED
 	- chromium 75.0.3770.80-1
-	- sqlite3 <unfixed>
-	TODO: debian/changelog from sqlite3/3.27.2-3 claims "mostly" fixed
+	- sqlite3 3.27.2-3
+	NOTE: https://www.sqlite.org/src/info/07ee06fd390bfebe
+	NOTE: https://www.sqlite.org/src/info/0b6ae032c28e7fe3
 CVE-2019-5826
 	RESERVED
 	- chromium 75.0.3770.80-1



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/2f869de3a25a574f5b7f1913477af4b3813cb792

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/2f869de3a25a574f5b7f1913477af4b3813cb792
You're receiving this email because of your account on salsa.debian.org.

-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20190613/4ab6adc8/attachment.html>


More information about the debian-security-tracker-commits mailing list