[Git][security-tracker-team/security-tracker][master] Update guacamole-client note in dla-needed.txt

Markus Koschany apo at debian.org
Sat Oct 10 17:00:50 BST 2020



Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker


Commits:
9c60750b by Markus Koschany at 2020-10-10T18:00:43+02:00
Update guacamole-client note in dla-needed.txt

- - - - -


1 changed file:

- data/dla-needed.txt


Changes:

=====================================
data/dla-needed.txt
=====================================
@@ -77,6 +77,11 @@ golang-1.8
 golang-golang-x-net-dev
 --
 guacamole-client (Markus Koschany)
+  NOTE: 20201010: Open CVE do not affect the client. Reported my findings to
+  NOTE: the maintainers and the security team. Waiting for feedback. I am
+  NOTE: inclined to mark the package as EOL anyway because the client is
+  NOTE: incompatible with the secure 1.2.0 server version and due to the lack of
+  NOTE: maintainance in Debian.
 --
 jupyter-notebook
   NOTE: 20200711: Vulnerable to (at least) CVE-2018-19351. (lamby)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/9c60750b704fc70869615edad6cdb7d66e9f55ff

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/9c60750b704fc70869615edad6cdb7d66e9f55ff
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20201010/f43f4c82/attachment-0001.html>


More information about the debian-security-tracker-commits mailing list