[Git][security-tracker-team/security-tracker][master] Add CVE-2019-15523/csync2

Salvatore Bonaccorso carnil at debian.org
Thu Dec 31 16:06:27 GMT 2020



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
49cbd175 by Salvatore Bonaccorso at 2020-12-31T17:05:59+01:00
Add CVE-2019-15523/csync2

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -92932,7 +92932,9 @@ CVE-2019-15525 (There is Missing SSL Certificate Validation in the pw3270 termin
 CVE-2019-15524 (CSZ CMS 1.2.3 allows arbitrary file upload, as demonstrated by a .php  ...)
 	NOT-FOR-US: CSZ CMS
 CVE-2019-15523 (An issue was discovered in LINBIT csync2 through 2.0. It does not corr ...)
-	TODO: check
+	- csync2 2.0-25-gc0faaf9-1
+	[buster] - csync2 <no-dsa> (Minor issue)
+	NOTE: https://github.com/LINBIT/csync2/pull/13/commits/92742544a56bcbcd9ec99ca15f898b31797e39e2
 CVE-2019-15522 (An issue was discovered in LINBIT csync2 through 2.0. csync_daemon_ses ...)
 	- csync2 2.0-25-gc0faaf9-1 (bug #955445)
 	[buster] - csync2 2.0-22-gce67c55-1+deb10u1



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/49cbd175766be557b4e2cbb4fd456456e16335c9

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/49cbd175766be557b4e2cbb4fd456456e16335c9
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20201231/2950379c/attachment.html>


More information about the debian-security-tracker-commits mailing list