[Git][security-tracker-team/security-tracker][master] xml-security-c issue (#913136) got addressed in 9.12

Salvatore Bonaccorso carnil at debian.org
Sat Feb 8 12:48:28 GMT 2020



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
fa1960b0 by Salvatore Bonaccorso at 2020-02-08T13:47:40+01:00
xml-security-c issue (#913136) got addressed in 9.12

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -89257,7 +89257,7 @@ CVE-2018-14879 (The command-line argument parser in tcpdump before 4.9.3 has a b
 	NOTE: https://github.com/the-tcpdump-group/tcpdump/commit/9ba91381954ad325ea4fd26b9c65a8bd9a2a85b6
 CVE-2018-XXXX [DSA verification crashes OpenSSL on invalid combinations of key content]
 	- xml-security-c 2.0.2-2 (bug #913136)
-	[stretch] - xml-security-c <no-dsa> (Minor issue; can be fixed via point release)
+	[stretch] - xml-security-c 1.7.3-4+deb9u2
 	[jessie] - xml-security-c 1.7.2-3+deb8u2
 	NOTE: temporary entry for DLA-1594-1
 	NOTE: https://issues.apache.org/jira/browse/SANTUARIO-496



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/fa1960b0b09d9b7ca93d900a27afe177fbde9349

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/fa1960b0b09d9b7ca93d900a27afe177fbde9349
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20200208/22e4a9e3/attachment.html>


More information about the debian-security-tracker-commits mailing list