[Git][security-tracker-team/security-tracker][master] CVE-2015-8559/chef: Reference upstream pull request fixing the issue

Salvatore Bonaccorso carnil at debian.org
Sun Nov 3 09:00:16 GMT 2019



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
11cfd3cb by Salvatore Bonaccorso at 2019-11-03T08:59:34Z
CVE-2015-8559/chef: Reference upstream pull request fixing the issue

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -188947,6 +188947,7 @@ CVE-2015-8559 (The knife bootstrap command in chef leaks the validator.pem priva
 	[jessie] - chef <ignored> (Minor issue; workaround using validatorless bootstrapping)
 	[wheezy] - chef <ignored> (Minor issue; workaround using validatorless bootstrapping)
 	NOTE: https://github.com/chef/chef/issues/3871
+	NOTE: https://github.com/chef/chef/pull/8885
 	NOTE: http://www.openwall.com/lists/oss-security/2015/12/14/10
 	NOTE: Workaround: use validatorless bootstrapping
 CVE-2015-8558 (The ehci_process_itd function in hw/usb/hcd-ehci.c in QEMU allows loca ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/11cfd3cb544e1dc62f2f310f9e5a732d2450246e

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/11cfd3cb544e1dc62f2f310f9e5a732d2450246e
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20191103/c11b9245/attachment.html>


More information about the debian-security-tracker-commits mailing list