[Git][security-tracker-team/security-tracker][master] puma fixed

Moritz Muehlenhoff jmm at debian.org
Thu Feb 6 12:43:48 GMT 2020



Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker


Commits:
6a1a79d8 by Moritz Muehlenhoff at 2020-02-06T13:43:29+01:00
puma fixed

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -27307,7 +27307,7 @@ CVE-2019-16772 (The serialize-to-js NPM package before version 3.0.1 is vulnerab
 CVE-2019-16771 (Versions of Armeria 0.85.0 through and including 0.96.0 are vulnerable ...)
 	NOT-FOR-US: Armeria
 CVE-2019-16770 (In Puma before versions 3.12.2 and 4.3.1, a poorly-behaved client coul ...)
-	- puma <unfixed> (bug #946312)
+	- puma 3.12.0-4 (bug #946312)
 	[buster] - puma <no-dsa> (Minor issue)
 	[stretch] - puma <no-dsa> (Minor issue)
 	NOTE: https://github.com/puma/puma/security/advisories/GHSA-7xx3-m584-x994



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/6a1a79d806c88a91ac998eb066c11b4f6ca1bd95

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/6a1a79d806c88a91ac998eb066c11b4f6ca1bd95
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20200206/5cca91a4/attachment.html>


More information about the debian-security-tracker-commits mailing list