[Git][security-tracker-team/security-tracker][master] Update information for CVE-2019-9764/consul

Salvatore Bonaccorso carnil at debian.org
Mon Feb 3 20:38:05 GMT 2020



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
c2205bc6 by Salvatore Bonaccorso at 2020-02-03T21:37:32+01:00
Update information for CVE-2019-9764/consul

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -49594,7 +49594,8 @@ CVE-2019-9766 (Stack-based buffer overflow in Free MP3 CD Ripper 2.6, when conve
 CVE-2019-9765 (In Blog_mini 1.0, XSS exists via the author name of a comment reply in ...)
 	NOT-FOR-US: Blog_mini
 CVE-2019-9764 (HashiCorp Consul 1.4.3 lacks server hostname verification for agent-to ...)
-	- consul <unfixed>
+	- consul <not-affected> (Only affected 1.4.3 version)
+	NOTE: https://github.com/hashicorp/consul/issues/5519
 CVE-2019-9763 (An issue was discovered in Openfind Mail2000 6.0 and 7.0 Webmail. XSS  ...)
 	NOT-FOR-US: Openfind Mail2000 Webmail
 CVE-2019-9762 (A SQL Injection was discovered in PHPSHE 1.7 in include/plugin/payment ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/c2205bc6b1ecc9156680d74a5df6dafd4f9791d5

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/c2205bc6b1ecc9156680d74a5df6dafd4f9791d5
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20200203/474977e9/attachment.html>


More information about the debian-security-tracker-commits mailing list