[Git][security-tracker-team/security-tracker][master] CVE-2021-27927/zabbix: stretch not-affected

Sylvain Beucler beuc at debian.org
Mon Apr 19 19:07:56 BST 2021



Sylvain Beucler pushed to branch master at Debian Security Tracker / security-tracker


Commits:
098c199a by Sylvain Beucler at 2021-04-19T20:07:40+02:00
CVE-2021-27927/zabbix: stretch not-affected

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -8072,8 +8072,9 @@ CVE-2021-27928 (A remote code execution issue was discovered in MariaDB 10.2 bef
 CVE-2021-27927 (In Zabbix from 4.0.x before 4.0.28rc1, 5.0.0alpha1 before 5.0.10rc1, 5 ...)
 	- zabbix 1:5.0.8+dfsg-1
 	[buster] - zabbix <no-dsa> (Minor issue)
-	[stretch] - zabbix <no-dsa> (minor issue)
+	[stretch] - zabbix <not-affected> (Vulnerable code introduced later)
 	NOTE: https://support.zabbix.com/browse/ZBX-18942
+	NOTE: CControllerAuthenticationUpdate introduced by authentication revamp in https://support.zabbix.com/browse/ZBXNEXT-4573 (4.0)
 CVE-2021-27926
 	RESERVED
 CVE-2021-27925



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/098c199a6885fe727d6fc57501b3aafc55024aa0

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/098c199a6885fe727d6fc57501b3aafc55024aa0
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20210419/436b4565/attachment.htm>


More information about the debian-security-tracker-commits mailing list