[Git][security-tracker-team/security-tracker][master] automatic update

Salvatore Bonaccorso carnil at debian.org
Tue Nov 12 08:10:40 GMT 2019



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
6d5eeab6 by security tracker role at 2019-11-12T08:10:23Z
automatic update

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -1,3 +1,43 @@
+CVE-2019-18892
+	RESERVED
+CVE-2019-18891
+	RESERVED
+CVE-2019-18890
+	RESERVED
+CVE-2019-18889
+	RESERVED
+CVE-2019-18888
+	RESERVED
+CVE-2019-18887
+	RESERVED
+CVE-2019-18886
+	RESERVED
+CVE-2019-18885
+	RESERVED
+CVE-2019-18884
+	RESERVED
+CVE-2019-18883
+	RESERVED
+CVE-2019-18882 (WSO2 IS as Key Manager 5.7.0 allows stored XSS in download-userinfo.ja ...)
+	TODO: check
+CVE-2019-18881 (WSO2 IS as Key Manager 5.7.0 allows unauthenticated reflected XSS in t ...)
+	TODO: check
+CVE-2019-18880
+	RESERVED
+CVE-2019-18879
+	RESERVED
+CVE-2019-18878
+	RESERVED
+CVE-2019-18877
+	RESERVED
+CVE-2019-18876
+	RESERVED
+CVE-2019-18875
+	RESERVED
+CVE-2019-18874 (psutil (aka python-psutil) through 5.6.5 can have a double free. This  ...)
+	TODO: check
+CVE-2019-18873 (FUDForum 3.0.9 is vulnerable to Stored XSS via the User-Agent HTTP hea ...)
+	TODO: check
 CVE-2019-18872
 	RESERVED
 CVE-2019-18871



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/6d5eeab66660c2bc7a195fe9627ac7217facb0db

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/6d5eeab66660c2bc7a195fe9627ac7217facb0db
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20191112/1a177f16/attachment.html>


More information about the debian-security-tracker-commits mailing list