[Git][security-tracker-team/security-tracker][master] Don't associate CVE-2020-25689 with MediaWiki

Moritz Muehlenhoff jmm at debian.org
Fri Sep 25 08:30:24 BST 2020



Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker


Commits:
902f751c by Moritz Muehlenhoff at 2020-09-25T09:29:57+02:00
Don't associate CVE-2020-25689 with MediaWiki

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -878,7 +878,9 @@ CVE-2020-25690
 	RESERVED
 CVE-2020-25689
 	RESERVED
-	- mediawiki <unfixed>
+	NOT-FOR-US: CentralAuth MediaWiki extension
+	NOTE: The extension requires some new infrastructure code which was added to the
+	NOTE: MediaWiki 1.31.9 / 1.34.3 security releases announced at
 	NOTE: https://lists.wikimedia.org/pipermail/wikitech-l/2020-September/093888.html
 	NOTE: https://phabricator.wikimedia.org/T260485
 CVE-2020-25688



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/902f751c6de6f5a37a01c53bddeb4d74ee2a034d

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/902f751c6de6f5a37a01c53bddeb4d74ee2a034d
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20200925/03673305/attachment.html>


More information about the debian-security-tracker-commits mailing list