[Git][security-tracker-team/security-tracker][master] automatic update

Salvatore Bonaccorso carnil at debian.org
Thu Apr 15 09:10:32 BST 2021



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
6d3f55fd by security tracker role at 2021-04-15T08:10:24+00:00
automatic update

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -1,3 +1,247 @@
+CVE-2021-31336
+	RESERVED
+CVE-2021-31335
+	RESERVED
+CVE-2021-31334
+	RESERVED
+CVE-2021-31333
+	RESERVED
+CVE-2021-31332
+	RESERVED
+CVE-2021-31331
+	RESERVED
+CVE-2021-31330
+	RESERVED
+CVE-2021-31329
+	RESERVED
+CVE-2021-31328
+	RESERVED
+CVE-2021-31327
+	RESERVED
+CVE-2021-31326
+	RESERVED
+CVE-2021-31325
+	RESERVED
+CVE-2021-31324
+	RESERVED
+CVE-2021-31323
+	RESERVED
+CVE-2021-31322
+	RESERVED
+CVE-2021-31321
+	RESERVED
+CVE-2021-31320
+	RESERVED
+CVE-2021-31319
+	RESERVED
+CVE-2021-31318
+	RESERVED
+CVE-2021-31317
+	RESERVED
+CVE-2021-31316
+	RESERVED
+CVE-2021-31315
+	RESERVED
+CVE-2021-31314
+	RESERVED
+CVE-2021-31313
+	RESERVED
+CVE-2021-31312
+	RESERVED
+CVE-2021-31311
+	RESERVED
+CVE-2021-31310
+	RESERVED
+CVE-2021-31309
+	RESERVED
+CVE-2021-31308
+	RESERVED
+CVE-2021-31307
+	RESERVED
+CVE-2021-31306
+	RESERVED
+CVE-2021-31305
+	RESERVED
+CVE-2021-31304
+	RESERVED
+CVE-2021-31303
+	RESERVED
+CVE-2021-31302
+	RESERVED
+CVE-2021-31301
+	RESERVED
+CVE-2021-31300
+	RESERVED
+CVE-2021-31299
+	RESERVED
+CVE-2021-31298
+	RESERVED
+CVE-2021-31297
+	RESERVED
+CVE-2021-31296
+	RESERVED
+CVE-2021-31295
+	RESERVED
+CVE-2021-31294
+	RESERVED
+CVE-2021-31293
+	RESERVED
+CVE-2021-31292
+	RESERVED
+CVE-2021-31291
+	RESERVED
+CVE-2021-31290
+	RESERVED
+CVE-2021-31289
+	RESERVED
+CVE-2021-31288
+	RESERVED
+CVE-2021-31287
+	RESERVED
+CVE-2021-31286
+	RESERVED
+CVE-2021-31285
+	RESERVED
+CVE-2021-31284
+	RESERVED
+CVE-2021-31283
+	RESERVED
+CVE-2021-31282
+	RESERVED
+CVE-2021-31281
+	RESERVED
+CVE-2021-31280
+	RESERVED
+CVE-2021-31279
+	RESERVED
+CVE-2021-31278
+	RESERVED
+CVE-2021-31277
+	RESERVED
+CVE-2021-31276
+	RESERVED
+CVE-2021-31275
+	RESERVED
+CVE-2021-31274
+	RESERVED
+CVE-2021-31273
+	RESERVED
+CVE-2021-31272
+	RESERVED
+CVE-2021-31271
+	RESERVED
+CVE-2021-31270
+	RESERVED
+CVE-2021-31269
+	RESERVED
+CVE-2021-31268
+	RESERVED
+CVE-2021-31267
+	RESERVED
+CVE-2021-31266
+	RESERVED
+CVE-2021-31265
+	RESERVED
+CVE-2021-31264
+	RESERVED
+CVE-2021-31263
+	RESERVED
+CVE-2021-31262
+	RESERVED
+CVE-2021-31261
+	RESERVED
+CVE-2021-31260
+	RESERVED
+CVE-2021-31259
+	RESERVED
+CVE-2021-31258
+	RESERVED
+CVE-2021-31257
+	RESERVED
+CVE-2021-31256
+	RESERVED
+CVE-2021-31255
+	RESERVED
+CVE-2021-31254
+	RESERVED
+CVE-2021-31253
+	RESERVED
+CVE-2021-31252
+	RESERVED
+CVE-2021-31251
+	RESERVED
+CVE-2021-31250
+	RESERVED
+CVE-2021-31249
+	RESERVED
+CVE-2021-31248
+	RESERVED
+CVE-2021-31247
+	RESERVED
+CVE-2021-31246
+	RESERVED
+CVE-2021-31245
+	RESERVED
+CVE-2021-31244
+	RESERVED
+CVE-2021-31243
+	RESERVED
+CVE-2021-31242
+	RESERVED
+CVE-2021-31241
+	RESERVED
+CVE-2021-31240
+	RESERVED
+CVE-2021-31239
+	RESERVED
+CVE-2021-31238
+	RESERVED
+CVE-2021-31237
+	RESERVED
+CVE-2021-31236
+	RESERVED
+CVE-2021-31235
+	RESERVED
+CVE-2021-31234
+	RESERVED
+CVE-2021-31233
+	RESERVED
+CVE-2021-31232
+	RESERVED
+CVE-2021-31231
+	RESERVED
+CVE-2021-31230
+	RESERVED
+CVE-2021-31229
+	RESERVED
+CVE-2021-31228
+	RESERVED
+CVE-2021-31227
+	RESERVED
+CVE-2021-31226
+	RESERVED
+CVE-2021-31225
+	RESERVED
+CVE-2021-31224
+	RESERVED
+CVE-2021-31223
+	RESERVED
+CVE-2021-31222
+	RESERVED
+CVE-2021-31221
+	RESERVED
+CVE-2021-31220
+	RESERVED
+CVE-2021-31219
+	RESERVED
+CVE-2021-31218
+	RESERVED
+CVE-2021-31217
+	RESERVED
+CVE-2021-31216
+	RESERVED
+CVE-2021-31215
+	RESERVED
 CVE-2021-3499
 	RESERVED
 	NOT-FOR-US: Openshift/ovn-kubernetes
@@ -1535,8 +1779,8 @@ CVE-2015-20001 (In the standard library in Rust before 1.2.0, BinaryHeap is not
 	- rustc 1.2.0+dfsg1-1
 	NOTE: https://github.com/rust-lang/rust/issues/25842
 	NOTE: https://github.com/rust-lang/rust/pull/25856
-CVE-2021-30487
-	RESERVED
+CVE-2021-30487 (In the topic moving API in Zulip Server 3.x before 3.4, organization a ...)
+	TODO: check
 CVE-2021-30486
 	RESERVED
 CVE-2021-30485 (An issue was discovered in libezxml.a in ezXML 0.8.6. The function ezx ...)
@@ -1563,12 +1807,12 @@ CVE-2021-30480 (Zoom Chat through 2021-04-09 on Windows and macOS allows certain
 	NOT-FOR-US: Zoom Chat
 CVE-2021-3488
 	RESERVED
-CVE-2021-30479
-	RESERVED
-CVE-2021-30478
-	RESERVED
-CVE-2021-30477
-	RESERVED
+CVE-2021-30479 (An issue was discovered in Zulip Server before 3.4. A bug in the imple ...)
+	TODO: check
+CVE-2021-30478 (An issue was discovered in Zulip Server before 3.4. A bug in the imple ...)
+	TODO: check
+CVE-2021-30477 (An issue was discovered in Zulip Server before 3.4. A bug in the imple ...)
+	TODO: check
 CVE-2021-30476
 	RESERVED
 CVE-2021-3487
@@ -3383,8 +3627,8 @@ CVE-2020-36290
 	RESERVED
 CVE-2020-36289
 	RESERVED
-CVE-2020-36288
-	RESERVED
+CVE-2020-36288 (The issue navigation and search view in Jira Server and Data Center be ...)
+	TODO: check
 CVE-2020-36287 (The dashboard gadgets preference resource of the Atlassian gadgets plu ...)
 	NOT-FOR-US: Atlassian
 CVE-2020-36286 (The membersOf JQL search function in Jira Server and Data Center befor ...)
@@ -3855,8 +4099,8 @@ CVE-2021-29451
 	RESERVED
 CVE-2021-29450
 	RESERVED
-CVE-2021-29449
-	RESERVED
+CVE-2021-29449 (Pi-hole is a Linux network-level advertisement and Internet tracker bl ...)
+	TODO: check
 CVE-2021-29448
 	RESERVED
 CVE-2021-29447
@@ -6738,8 +6982,8 @@ CVE-2021-28159
 	RESERVED
 CVE-2021-28158
 	RESERVED
-CVE-2021-28157
-	RESERVED
+CVE-2021-28157 (An SQL Injection issue in Devolutions Server before 2021.1 and Devolut ...)
+	TODO: check
 CVE-2021-28156
 	RESERVED
 CVE-2021-28155
@@ -7110,8 +7354,8 @@ CVE-2009-20001 (An issue was discovered in MantisBT before 2.24.5. It associates
 	- mantis <removed>
 CVE-2021-28049
 	RESERVED
-CVE-2021-28048
-	RESERVED
+CVE-2021-28048 (An overly permissive CORS policy in Devolutions Server before 2021.1 a ...)
+	TODO: check
 CVE-2021-28047 (Cross-Site Scripting (XSS) in Administrative Reports in Devolutions Re ...)
 	NOT-FOR-US: Devolutions Remote Desktop Manager
 CVE-2021-28046
@@ -7474,7 +7718,7 @@ CVE-2021-27906 (A carefully crafted PDF file can trigger an OutOfMemory-Exceptio
 	NOTE: https://www.openwall.com/lists/oss-security/2021/03/19/10
 	NOTE: https://issues.apache.org/jira/browse/PDFBOX-5112
 CVE-2021-27905 (The ReplicationHandler (normally registered at "/replication" under a  ...)
-	 - lucene-solr <unfixed>
+	- lucene-solr <unfixed>
 	NOTE: https://lists.apache.org/thread.html/r0ddc3a82bd7523b1453cb7a5e09eb5559517145425074a42eb326b10%40%3Cannounce.apache.org%3E
 	TODO: check details
 CVE-2021-27904 (An issue was discovered in app/Model/SharingGroupServer.php in MISP 2. ...)
@@ -9074,14 +9318,14 @@ CVE-2021-27185 (The samba-client package before 4.0.0 for Node.js allows command
 	NOT-FOR-US: Node samba-client
 CVE-2021-27184 (Pelco Digital Sentry Server 7.18.72.11464 has an XML External Entity v ...)
 	NOT-FOR-US: Pelco Digital Sentry Server
-CVE-2021-27183
-	RESERVED
-CVE-2021-27182
-	RESERVED
-CVE-2021-27181
-	RESERVED
-CVE-2021-27180
-	RESERVED
+CVE-2021-27183 (An issue was discovered in MDaemon before 20.0.4. Administrators can u ...)
+	TODO: check
+CVE-2021-27182 (An issue was discovered in MDaemon before 20.0.4. There is an IFRAME i ...)
+	TODO: check
+CVE-2021-27181 (An issue was discovered in MDaemon before 20.0.4. Remote Administratio ...)
+	TODO: check
+CVE-2021-27180 (An issue was discovered in MDaemon before 20.0.4. There is Reflected X ...)
+	TODO: check
 CVE-2021-27179 (An issue was discovered on FiberHome HG6245D devices through RP2613. I ...)
 	NOT-FOR-US: FiberHome devices
 CVE-2021-27178 (An issue was discovered on FiberHome HG6245D devices through RP2613. S ...)
@@ -11779,10 +12023,10 @@ CVE-2021-26078
 	RESERVED
 CVE-2021-26077
 	RESERVED
-CVE-2021-26076
-	RESERVED
-CVE-2021-26075
-	RESERVED
+CVE-2021-26076 (The jira.editor.user.mode cookie set by the Jira Editor Plugin in Jira ...)
+	TODO: check
+CVE-2021-26075 (The Jira importers plugin AttachTemporaryFile rest resource in Jira Se ...)
+	TODO: check
 CVE-2021-26074
 	RESERVED
 CVE-2021-26073



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/6d3f55fd9276afa4caddef02b13d7f9a01fbf931

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/6d3f55fd9276afa4caddef02b13d7f9a01fbf931
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20210415/aed16866/attachment.htm>


More information about the debian-security-tracker-commits mailing list