[Git][security-tracker-team/security-tracker][master] 2 commits: Mark CVE-2019-14858 as no-dsa for stretch and buster

Salvatore Bonaccorso carnil at debian.org
Thu Jan 2 19:07:47 GMT 2020



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
2c67b33d by Salvatore Bonaccorso at 2020-01-02T20:06:55+01:00
Mark CVE-2019-14858 as no-dsa for stretch and buster

- - - - -
18a553a0 by Salvatore Bonaccorso at 2020-01-02T20:07:17+01:00
Mark CVE-2019-14846 as no-dsa for stretch and buster

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -24812,6 +24812,8 @@ CVE-2019-14859 [DER encoding is not being verified in signatures]
 	NOTE: Fix for CVE-2019-14853 fixes as well CVE-2019-14859.
 CVE-2019-14858 (A vulnerability was found in Ansible engine 2.x up to 2.8 and Ansible  ...)
 	- ansible 2.8.6+dfsg-1 (bug #942332)
+	[buster] - ansible <no-dsa> (Minor issue)
+	[stretch] - ansible <no-dsa> (Minor issue)
 	NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=1760593
 	NOTE: https://github.com/ansible/ansible/pull/63405
 CVE-2019-14857 (A flaw was found in mod_auth_openidc before version 2.4.0.1. An open r ...)
@@ -24892,6 +24894,8 @@ CVE-2019-14847 (A flaw was found in samba 4.0.0 before samba 4.9.15 and samba 4.
 	NOTE: https://www.samba.org/samba/security/CVE-2019-14847.html
 CVE-2019-14846 (Ansible, all ansible_engine-2.x versions and ansible_engine-3.x up to  ...)
 	- ansible 2.8.6+dfsg-1 (low; bug #942188)
+	[buster] - ansible <no-dsa> (Minor issue)
+	[stretch] - ansible <no-dsa> (Minor issue)
 	NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=1755373
 	NOTE: https://github.com/ansible/ansible/pull/63366
 CVE-2019-14845 (A vulnerability was found in OpenShift builds, versions 4.1 up to 4.3. ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/compare/14be0b434fc8c41f70074d7517c233a532108019...18a553a076de53b35d40385b305a2ec77e08786f

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/compare/14be0b434fc8c41f70074d7517c233a532108019...18a553a076de53b35d40385b305a2ec77e08786f
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20200102/b5cf2ab2/attachment.html>


More information about the debian-security-tracker-commits mailing list