[Git][security-tracker-team/security-tracker][master] Mark CVE-2020-7660 as NFU

Salvatore Bonaccorso carnil at debian.org
Fri Jun 5 08:18:09 BST 2020



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
69eb1391 by Salvatore Bonaccorso at 2020-06-05T09:17:31+02:00
Mark CVE-2020-7660 as NFU

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -16297,7 +16297,7 @@ CVE-2020-7662 (websocket-extensions npm module prior to 1.0.4 allows Denial of S
 CVE-2020-7661 (all versions of url-regex are vulnerable to Regular Expression Denial  ...)
 	TODO: check
 CVE-2020-7660 (serialize-javascript prior to 3.1.0 allows remote attackers to inject  ...)
-	TODO: check
+	NOT-FOR-US: serialize-javascript Node package
 CVE-2020-7659 (reel through 0.6.1 allows Request Smuggling attacks due to incorrect C ...)
 	TODO: check
 CVE-2020-7658 (meinheld prior to 1.0.2 is vulnerable to HTTP Request Smuggling. HTTP  ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/69eb13910899a1958f9dc030937aeb327cac33e0

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/69eb13910899a1958f9dc030937aeb327cac33e0
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20200605/3c027681/attachment.html>


More information about the debian-security-tracker-commits mailing list