[Git][security-tracker-team/security-tracker][master] 2 commits: Add CVE-2019-10672/libmysofa

Salvatore Bonaccorso carnil at debian.org
Sun Mar 31 20:28:07 BST 2019



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
5c74a2b1 by Salvatore Bonaccorso at 2019-03-31T19:27:00Z
Add CVE-2019-10672/libmysofa

- - - - -
6b230d9a by Salvatore Bonaccorso at 2019-03-31T19:27:26Z
CVE-2019-1785: sort entries by source package name

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -1,3 +1,6 @@
+CVE-2019-10672
+	- libmysofa <unfixed>
+	NOTE: https://github.com/hoene/libmysofa/commit/d39a171e9c6a1c44dbdf43f9db6c3fbd887e38c1
 CVE-2019-10663 (Grandstream UCM6204 before 1.0.19.20 devices allow remote authenticate ...)
 	NOT-FOR-US: Grandstream
 CVE-2019-10662 (Grandstream UCM6204 before 1.0.19.20 devices allow remote authenticate ...)
@@ -23202,9 +23205,9 @@ CVE-2019-1786
 CVE-2019-1785
 	RESERVED
 	- libclamunrar 0.101.2-1
+	[jessie] - libclamunrar <not-affected> (Vulnerable code introduced later)
 	- clamav 0.101.2+dfsg-1
 	[jessie] - clamav <not-affected> (Vulnerable code introduced later)
-	[jessie] - libclamunrar <not-affected> (Vulnerable code introduced later)
 CVE-2019-1784
 	RESERVED
 CVE-2019-1783



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/compare/b2b0cb7d0bf304a4681ae2cd1c1bff408fd6602b...6b230d9a241ed518d75f080c6b39f681118ef331

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/compare/b2b0cb7d0bf304a4681ae2cd1c1bff408fd6602b...6b230d9a241ed518d75f080c6b39f681118ef331
You're receiving this email because of your account on salsa.debian.org.

-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20190331/e5f1ac61/attachment-0001.html>


More information about the debian-security-tracker-commits mailing list