[Git][security-tracker-team/security-tracker][master] Add info for CVE-2020-11100

Sebastien Delafond seb at debian.org
Thu Apr 2 14:47:13 BST 2020



Sebastien Delafond pushed to branch master at Debian Security Tracker / security-tracker


Commits:
76b3c8e5 by Sébastien Delafond at 2020-04-02T15:46:45+02:00
Add info for CVE-2020-11100

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -778,8 +778,11 @@ CVE-2020-11102
 	RESERVED
 CVE-2020-11101
 	RESERVED
-CVE-2020-11100
-	RESERVED
+CVE-2020-11100 (In HAProxy 1.8 through 2.1.3, a remote attacker can write arbitrary ...)
+	{DSA-4649-1}
+	[stretch] - haproxy <not-affected> (Vulnerable code introduced in 1.8)
+	[jessie] - haproxy <not-affected> (Vulnerable code introduced in 1.8)
+        NOTE: https://git.haproxy.org/?p=haproxy-2.1.git;a=commit;h=f17f86304f187b0f10ca6a8d46346afd9851a543
 CVE-2019-20634 (An issue was discovered in Proofpoint Email Protection through 2019-09 ...)
 	NOT-FOR-US: Proofpoint Email Protection
 CVE-2016-11024 (odata4j 0.7.0 allows ExecuteJPQLQueryCommand.java SQL injection. NOTE: ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/76b3c8e553d6cea9497aa25db23a81ba3acb6c09

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/76b3c8e553d6cea9497aa25db23a81ba3acb6c09
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20200402/98575031/attachment-0001.html>


More information about the debian-security-tracker-commits mailing list