[Git][security-tracker-team/security-tracker][master] 2 commits: Sync CVE-2020-13435 affected version with upper suite

Salvatore Bonaccorso carnil at debian.org
Mon May 25 20:21:04 BST 2020



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
32df8715 by Salvatore Bonaccorso at 2020-05-25T21:18:27+02:00
Sync CVE-2020-13435 affected version with upper suite

- - - - -
78f485b3 by Salvatore Bonaccorso at 2020-05-25T21:20:29+02:00
Mark CVE-2020-13434/sqlite3 as no-dsa for buster and stretch

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -12,11 +12,14 @@ CVE-2020-13435 (SQLite through 3.32.0 has a segmentation fault in sqlite3ExprCod
 	- sqlite3 3.32.1-1
 	[buster] - sqlite3 <no-dsa> (Minor issue)
 	[stretch] - sqlite3 <not-affected> (Vulnerable code introduced later)
+	[jessie] - sqlite3 <not-affected> (Vulnerable code introduced later)
 	NOTE: https://www.sqlite.org/src/info/7a5279a25c57adf1
 	NOTE: https://www.sqlite.org/src/info/ad7bb70af9bb68d1
 	NOTE: https://www.sqlite.org/src/info/572105de1d44bca4
 CVE-2020-13434 (SQLite through 3.32.0 has an integer overflow in sqlite3_str_vappendf  ...)
 	- sqlite3 3.32.1-1
+	[buster] - sqlite3 <no-dsa> (Minor issue)
+	[stretch] - sqlite3 <no-dsa> (Minor issue)
 	NOTE: https://www.sqlite.org/src/info/23439ea582241138
 	NOTE: https://www.sqlite.org/src/info/d08d3405878d394e
 CVE-2020-13433 (Jason2605 AdminPanel 4.0 allows SQL Injection via the editPlayer.php h ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/compare/7672f3f4f5fef3c2519b4b1fef5e39cf2b72f9d2...78f485b3f800508294f7d07cd707372e6444cbee

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/compare/7672f3f4f5fef3c2519b4b1fef5e39cf2b72f9d2...78f485b3f800508294f7d07cd707372e6444cbee
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20200525/4af5137b/attachment-0001.html>


More information about the debian-security-tracker-commits mailing list