[Git][security-tracker-team/security-tracker][master] Follow up on webcit security issues in Stretch.
Markus Koschany
apo at debian.org
Thu Dec 10 22:45:05 GMT 2020
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker
Commits:
ca06d262 by Markus Koschany at 2020-12-10T23:43:58+01:00
Follow up on webcit security issues in Stretch.
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -8964,15 +8964,19 @@ CVE-2020-27743 (libtac in pam_tacplus through 1.5.1 lacks a check for a failure
CVE-2020-27742 (An Insecure Direct Object Reference vulnerability in Citadel WebCit th ...)
- webcit <removed> (bug #973385)
[buster] - webcit <ignored> (Minor issue)
+ [stretch] - webcit <ignored> (Minor issue)
CVE-2020-27741 (Multiple cross-site scripting (XSS) vulnerabilities in Citadel WebCit ...)
- webcit <removed> (bug #973385)
[buster] - webcit <ignored> (Minor issue)
+ [stretch] - webcit <ignored> (Minor issue)
CVE-2020-27740 (Citadel WebCit through 926 allows unauthenticated remote attackers to ...)
- webcit <removed> (bug #973385)
[buster] - webcit <ignored> (Minor issue)
+ [stretch] - webcit <ignored> (Minor issue)
CVE-2020-27739 (A Weak Session Management vulnerability in Citadel WebCit through 926 ...)
- webcit <removed> (bug #973385)
[buster] - webcit <ignored> (Minor issue)
+ [stretch] - webcit <ignored> (Minor issue)
CVE-2020-27738
RESERVED
CVE-2020-27737
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/ca06d262a36d4da481abfe0df705de4dedb1bcb3
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/ca06d262a36d4da481abfe0df705de4dedb1bcb3
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20201210/9ddef417/attachment.html>
More information about the debian-security-tracker-commits
mailing list