[Git][security-tracker-team/security-tracker][master] Expand note for CVE-2020-15238

Salvatore Bonaccorso carnil at debian.org
Tue Oct 27 19:44:02 GMT 2020



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
005cb8c3 by Salvatore Bonaccorso at 2020-10-27T20:43:36+01:00
Expand note for CVE-2020-15238

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -26799,7 +26799,9 @@ CVE-2020-15238
 	RESERVED
 	- blueman <unfixed>
 	NOTE: https://github.com/blueman-project/blueman/commit/02161d60e8e311b08fb18254615259085fcd6688
-	NOTE: Additionally Build-Depends on libpolkit-agent-1-dev needed.
+	NOTE: Additionally Build-Depends on libpolkit-agent-1-dev needed (blueman should
+	NOTE: use polkit for authorisation but due to a packaging issue this was not
+	NOTE: enabled).
 CVE-2020-15237 (In Shrine before version 3.3.0, when using the `derivation_endpoint` p ...)
 	NOT-FOR-US: Shrine
 CVE-2020-15236 (In Wiki.js before version 2.5.151, directory traversal outside of Wiki ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/005cb8c30fd2dd6c0b65afde3ce1ef744ff1b469

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/005cb8c30fd2dd6c0b65afde3ce1ef744ff1b469
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20201027/6375583c/attachment.html>


More information about the debian-security-tracker-commits mailing list