[Git][security-tracker-team/security-tracker][master] Follow up on webcit security issues in Stretch.

Markus Koschany apo at debian.org
Thu Dec 10 22:45:05 GMT 2020



Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker


Commits:
ca06d262 by Markus Koschany at 2020-12-10T23:43:58+01:00
Follow up on webcit security issues in Stretch.

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -8964,15 +8964,19 @@ CVE-2020-27743 (libtac in pam_tacplus through 1.5.1 lacks a check for a failure
 CVE-2020-27742 (An Insecure Direct Object Reference vulnerability in Citadel WebCit th ...)
 	- webcit <removed> (bug #973385)
 	[buster] - webcit <ignored> (Minor issue)
+	[stretch] - webcit <ignored> (Minor issue)
 CVE-2020-27741 (Multiple cross-site scripting (XSS) vulnerabilities in Citadel WebCit  ...)
 	- webcit <removed> (bug #973385)
 	[buster] - webcit <ignored> (Minor issue)
+	[stretch] - webcit <ignored> (Minor issue)
 CVE-2020-27740 (Citadel WebCit through 926 allows unauthenticated remote attackers to  ...)
 	- webcit <removed> (bug #973385)
 	[buster] - webcit <ignored> (Minor issue)
+	[stretch] - webcit <ignored> (Minor issue)
 CVE-2020-27739 (A Weak Session Management vulnerability in Citadel WebCit through 926  ...)
 	- webcit <removed> (bug #973385)
 	[buster] - webcit <ignored> (Minor issue)
+	[stretch] - webcit <ignored> (Minor issue)
 CVE-2020-27738
 	RESERVED
 CVE-2020-27737



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/ca06d262a36d4da481abfe0df705de4dedb1bcb3

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/ca06d262a36d4da481abfe0df705de4dedb1bcb3
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20201210/9ddef417/attachment.html>


More information about the debian-security-tracker-commits mailing list