[Git][security-tracker-team/security-tracker][master] Add CVE-2020-1736{7,8}/firejail

Salvatore Bonaccorso carnil at debian.org
Thu Aug 6 19:32:32 BST 2020



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
af4ec362 by Salvatore Bonaccorso at 2020-08-06T20:31:56+02:00
Add CVE-2020-1736{7,8}/firejail

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -4,10 +4,14 @@ CVE-2020-17370
 	RESERVED
 CVE-2020-17369
 	RESERVED
-CVE-2020-17368
+CVE-2020-17368 [don't pass command line through shell when redirecting output]
 	RESERVED
-CVE-2020-17367
+	- firejail 0.9.62-4
+	NOTE: https://github.com/netblue30/firejail/commit/34193604fed04cad2b7b6b0f1a3a0428afd9ed5b
+CVE-2020-17367 [don't interpret output arguments after end-of-options tag]
 	RESERVED
+	- firejail 0.9.62-4
+	NOTE: https://github.com/netblue30/firejail/commit/2c734d6350ad321fccbefc5ef0382199ac331b37
 CVE-2020-17366 (An issue was discovered in NLnet Labs Routinator 0.1.0 through 0.7.1.  ...)
 	TODO: check
 CVE-2020-17365



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/af4ec362801c7f19352cfd19d33e65b24f1b361c

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/af4ec362801c7f19352cfd19d33e65b24f1b361c
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20200806/45fc3c61/attachment.html>


More information about the debian-security-tracker-commits mailing list