[Git][security-tracker-team/security-tracker][master] Add CVE-2020-1945/ant

Salvatore Bonaccorso carnil at debian.org
Thu May 14 15:28:40 BST 2020



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
8c1549b6 by Salvatore Bonaccorso at 2020-05-14T16:27:36+02:00
Add CVE-2020-1945/ant

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -28509,8 +28509,17 @@ CVE-2020-1947 (In Apache ShardingSphere(incubator) 4.0.0-RC3 and 4.0.0, the Shar
 	NOT-FOR-US: Apache ShardingSphere
 CVE-2020-1946
 	RESERVED
-CVE-2020-1945
-	RESERVED
+CVE-2020-1945 [insecure temporary file vulnerability]
+	RESERVED
+	- ant <unfixed>
+	NOTE: https://www.openwall.com/lists/oss-security/2020/05/13/1
+	NOTE: https://github.com/apache/ant/commit/9c1f4d905da59bf446570ac28df5b68a37281f35 (1.9.15)
+	NOTE: https://github.com/apache/ant/commit/926f339ea30362bec8e53bf5924ce803938163b7 (1.9.15)
+	NOTE: https://github.com/apache/ant/commit/d591851ae3921172bb825b5a5344afa3de0e28ca (10.8)
+	NOTE: https://github.com/apache/ant/commit/9c1f4d905da59bf446570ac28df5b68a37281f35 (10.8)
+	NOTE: https://github.com/apache/ant/commit/041b058c7bf10a94d56db3ca9dba38cf90ab9943 (10.8)
+	NOTE: https://github.com/apache/ant/commit/a8645a151bc706259fb1789ef587d05482d98612 (10.8)
+	NOTE: https://github.com/apache/ant/commit/926f339ea30362bec8e53bf5924ce803938163b7 (10.8)
 CVE-2020-1944 (There is a vulnerability in Apache Traffic Server 6.0.0 to 6.2.3, 7.0. ...)
 	{DSA-4672-1}
 	- trafficserver 8.0.6+ds-1



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/8c1549b648cc8016d92f086a63a2378550d3334a

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/8c1549b648cc8016d92f086a63a2378550d3334a
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20200514/5a7f0b44/attachment.html>


More information about the debian-security-tracker-commits mailing list