[Git][security-tracker-team/security-tracker][master] php7.3 removed from unstable
Salvatore Bonaccorso
carnil at debian.org
Tue Mar 24 06:54:37 GMT 2020
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits:
6b3d2c39 by Salvatore Bonaccorso at 2020-03-24T07:54:07+01:00
php7.3 removed from unstable
- - - - -
2 changed files:
- data/CVE/list
- data/embedded-code-copies
Changes:
=====================================
data/CVE/list
=====================================
@@ -167689,7 +167689,7 @@ CVE-2017-7273 (The cp_report_fixup function in drivers/hid/hid-cypress.c in the
NOTE: Fixed by: https://git.kernel.org/linus/1ebb71143758f45dc0fa76e2f48429e13b16d110
CVE-2017-7272 (PHP through 7.1.11 enables potential SSRF in applications that accept ...)
{DLA-875-1}
- - php7.3 <unfixed>
+ - php7.3 <removed>
[buster] - php7.3 <ignored> (Upstream patch breaks existing applications, was reverted again, revisit if a new approach has been identified)
- php7.1 <removed>
- php7.0 <removed>
@@ -168054,7 +168054,7 @@ CVE-2017-7192 (WebSocket.swift in Starscream before 2.0.4 allows an SSL Pinning
CVE-2017-7190
RESERVED
CVE-2017-7189 (main/streams/xp_socket.c in PHP 7.x before 2017-03-07 misparses fsocko ...)
- - php7.3 <unfixed>
+ - php7.3 <removed>
[buster] - php7.3 <ignored> (Upstream patch breaks existing applications, was reverted again, revisit if a new approach has been identified)
- php7.0 <removed>
[stretch] - php7.0 <ignored> (Upstream patch breaks existing applications, was reverted again, revisit if a new approach has been identified)
=====================================
data/embedded-code-copies
=====================================
@@ -2214,7 +2214,7 @@ libmbfl (itp: #570708)
libonig
- php5 5.3.2-1 (embed)
- php7.0 <removed> (embed; bug #945525)
- - php7.3 <unfixed> (embed; bug #945526)
+ - php7.3 <removed> (embed; bug #945526)
xmlrpc-epi
- php5 <unfixed> (embed)
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/6b3d2c3930360232ac4db46ce5248c1dc3388661
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/6b3d2c3930360232ac4db46ce5248c1dc3388661
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20200324/fa24dd7c/attachment.html>
More information about the debian-security-tracker-commits
mailing list