[Git][security-tracker-team/security-tracker][master] Add CVE-2020-14150/bison

Salvatore Bonaccorso carnil at debian.org
Mon Jun 15 21:42:16 BST 2020



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
a0050fa0 by Salvatore Bonaccorso at 2020-06-15T22:41:40+02:00
Add CVE-2020-14150/bison

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -28,7 +28,8 @@ CVE-2020-14152 (In IJG JPEG (aka libjpeg) before 9d, jpeg_mem_available() in jme
 CVE-2020-14151 (In IJG JPEG (aka libjpeg) before 9d, read_*_pixel() in rdtarga.c in cj ...)
 	TODO: check
 CVE-2020-14150 (GNU Bison before 3.5.4 allows attackers to cause a denial of service ( ...)
-	TODO: check
+	- bison 2:3.6.1+dfsg-1
+	NOTE: https://lists.gnu.org/archive/html/info-gnu/2020-04/msg00000.html
 CVE-2020-14149 (In uftpd before 2.12, handle_CWD in ftpcmd.c mishandled the path provi ...)
 	TODO: check
 CVE-2020-14148 (The Server-Server protocol implementation in ngIRCd before 26~rc2 allo ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/a0050fa033546c70e549276ca365b6c4199def6b

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/a0050fa033546c70e549276ca365b6c4199def6b
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20200615/dc3a6cf5/attachment.html>


More information about the debian-security-tracker-commits mailing list