[Git][security-tracker-team/security-tracker][master] new mod-crs issue

Moritz Muehlenhoff jmm at debian.org
Mon Oct 28 12:57:03 GMT 2019



Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker


Commits:
45efb70e by Moritz Muehlenhoff at 2019-10-28T12:56:31Z
new mod-crs issue
NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -15820,7 +15820,9 @@ CVE-2019-13466 (Western Digital SSD Dashboard before 2.5.1.0 and SanDisk SSD Das
 CVE-2019-13465
 	RESERVED
 CVE-2019-13464 (An issue was discovered in OWASP ModSecurity Core Rule Set (CRS) 3.0.2 ...)
-	TODO: check
+	- modsecurity-crs <unfixed>
+	NOTE: https://github.com/SpiderLabs/owasp-modsecurity-crs/commit/6090d6b0a90417f1a60aa68a01eb777cef2e1184
+	NOTE: https://github.com/SpiderLabs/owasp-modsecurity-crs/issues/1386
 CVE-2019-13463
 	RESERVED
 CVE-2019-13462 (Lansweeper before 7.1.117.4 allows unauthenticated SQL injection. ...)
@@ -32538,8 +32540,10 @@ CVE-2019-7621
 	RESERVED
 CVE-2019-7620
 	RESERVED
+	NOT-FOR-US: Logstash Beats
 CVE-2019-7619
 	RESERVED
+	- elasticsearch <removed>
 CVE-2019-7618 (A local file disclosure flaw was found in Elastic Code versions 7.3.0, ...)
 	NOT-FOR-US: Elastic Code
 CVE-2019-7617 (When the Elastic APM agent for Python versions before 5.1.0 is run as  ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/45efb70ec61585f43170a46f6bc10dc4ea87338f

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/45efb70ec61585f43170a46f6bc10dc4ea87338f
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20191028/fb491e75/attachment.html>


More information about the debian-security-tracker-commits mailing list