[Git][security-tracker-team/security-tracker][master] Update status for CVE-2019-8336/consul

Salvatore Bonaccorso carnil at debian.org
Mon Feb 3 20:40:12 GMT 2020



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
3d189ef2 by Salvatore Bonaccorso at 2020-02-03T21:39:37+01:00
Update status for CVE-2019-8336/consul

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -53666,7 +53666,8 @@ CVE-2019-8339 (An issue was discovered in Falco through 0.14.0. A missing indica
 CVE-2019-8338 (The signature verification routine in the Airmail GPG-PGP Plugin, vers ...)
 	NOT-FOR-US: Airmail
 CVE-2019-8336 (HashiCorp Consul (and Consul Enterprise) 1.4.x before 1.4.3 allows a c ...)
-	- consul <unfixed>
+	- consul <not-affected> (Only affected 1.4.x series up, vulnerable code never present in Debian)
+	NOTE: https://github.com/hashicorp/consul/issues/5423
 CVE-2019-8335 (An issue was discovered in SchoolCMS 2.3.1. There is an XSS vulnerabil ...)
 	NOT-FOR-US: SchoolCMS
 CVE-2019-8334 (An issue was discovered in SchoolCMS 2.3.1. There is an XSS vulnerabil ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/3d189ef2486691808633588fa0085347fc08f9b9

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/3d189ef2486691808633588fa0085347fc08f9b9
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20200203/65d16f95/attachment.html>


More information about the debian-security-tracker-commits mailing list