[Git][security-tracker-team/security-tracker][master] Add Debian bug reference for CVE-2020-28926/minidlna
Salvatore Bonaccorso
carnil at debian.org
Sat Dec 5 15:58:17 GMT 2020
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits:
2a1cca4a by Salvatore Bonaccorso at 2020-12-05T16:57:44+01:00
Add Debian bug reference for CVE-2020-28926/minidlna
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -1612,7 +1612,7 @@ CVE-2020-28928 (In musl libc through 1.2.1, wcsnrtombs mishandles particular com
CVE-2020-28927 (There is a Stored XSS in Magicpin v2.1 in the User Registration sectio ...)
NOT-FOR-US: Magicpin
CVE-2020-28926 (ReadyMedia (aka MiniDLNA) before versions 1.3.0 allows remote code exe ...)
- - minidlna <unfixed>
+ - minidlna <unfixed> (bug #976595)
NOTE: https://www.rootshellsecurity.net/remote-heap-corruption-bug-discovery-minidlna/
NOTE: https://sourceforge.net/p/minidlna/git/ci/9fba41008adebc1da0f4f6c6e27ae422ace3fe4a (v1_3_0)
CVE-2020-28925
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/2a1cca4a4d1c2a7ae54a002a5ff304ed21b8ab21
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/2a1cca4a4d1c2a7ae54a002a5ff304ed21b8ab21
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20201205/d06c22db/attachment.html>
More information about the debian-security-tracker-commits
mailing list