[Git][security-tracker-team/security-tracker][master] 2 commits: CVE-2019-0757,nuget: Add bug reference
Markus Koschany
apo at debian.org
Sun Mar 31 19:23:03 BST 2019
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker
Commits:
68ed0a89 by Markus Koschany at 2019-03-31T18:20:11Z
CVE-2019-0757,nuget: Add bug reference
- - - - -
a349c248 by Markus Koschany at 2019-03-31T18:22:10Z
Add nuget to dla-needed.txt for further investigation.
- - - - -
2 changed files:
- data/CVE/list
- data/dla-needed.txt
Changes:
=====================================
data/CVE/list
=====================================
@@ -26168,7 +26168,7 @@ CVE-2019-0758
RESERVED
CVE-2019-0757
RESERVED
- - nuget <unfixed>
+ - nuget <unfixed> (bug #926122)
NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=1685475
NOTE: https://github.com/NuGet/Home/issues/7673
CVE-2019-0756
=====================================
data/dla-needed.txt
=====================================
@@ -63,6 +63,10 @@ linux (Ben Hutchings)
--
linux-4.9 (Ben Hutchings)
--
+nuget
+ NOTE: 20190331: I could not verify if nuget in Jessie is vulnerable but I add
+ NOTE: it here for further investigation. (apo)
+--
polarssl
NOTE: 20181207: Not 100% sure if vulnerable. Upstream would prefer us to move to latest version, etc. (!). (lamby)
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/compare/1212b8de357834389f51f40e9674424231431f5b...a349c2484398c9e7b84ebab0cc74991b0feae2ff
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/compare/1212b8de357834389f51f40e9674424231431f5b...a349c2484398c9e7b84ebab0cc74991b0feae2ff
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20190331/4fe67a7a/attachment-0001.html>
More information about the debian-security-tracker-commits
mailing list