[Git][security-tracker-team/security-tracker][master] Mark jessie and stretch as not affected by latest haproxy vulnerability

Sebastien Delafond seb at debian.org
Wed Nov 27 08:15:55 GMT 2019



Sebastien Delafond pushed to branch master at Debian Security Tracker / security-tracker


Commits:
88390a4e by Sébastien Delafond at 2019-11-27T08:15:07Z
Mark jessie and stretch as not affected by latest haproxy vulnerability

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -36,6 +36,8 @@ CVE-2019-19309
 	RESERVED
 CVE-2019-XXXX [CRLF injection when decoding from http/2 to http/1]
 	- haproxy 2.0.10-1
+	[stretch] - haproxy <not-affected> (Vulnerable code introduced in 1.8)
+	[jessie] - haproxy <not-affected> (Vulnerable code introduced in 1.8)
 	NOTE: https://git.haproxy.org/?p=haproxy.git;a=commit;h=54f53ef7ce4102be596130b44c768d1818570344
 	NOTE: https://git.haproxy.org/?p=haproxy.git;a=commit;h=146f53ae7e97dbfe496d0445c2802dd0a30b0878
 CVE-2019-19308



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/88390a4e8c2a1533636575e153e3168490477688

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/88390a4e8c2a1533636575e153e3168490477688
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20191127/416e5cdf/attachment.html>


More information about the debian-security-tracker-commits mailing list