[Git][security-tracker-team/security-tracker][master] Add CVE-2021-29469/node-redis

Salvatore Bonaccorso carnil at debian.org
Sun Apr 25 07:25:28 BST 2021



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
15843918 by Salvatore Bonaccorso at 2021-04-25T08:25:00+02:00
Add CVE-2021-29469/node-redis

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -5130,7 +5130,9 @@ CVE-2021-29470 (Exiv2 is a command-line utility and C++ library for reading, wri
 	NOTE: https://github.com/Exiv2/exiv2/security/advisories/GHSA-8949-hhfh-j7rj
 	NOTE: https://github.com/Exiv2/exiv2/pull/1581
 CVE-2021-29469 (Node-redis is a Node.js Redis client. Before version 3.1.1, when a cli ...)
-	TODO: check
+	- node-redis <unfixed>
+	NOTE: https://github.com/NodeRedis/node-redis/security/advisories/GHSA-35q2-47q7-3pc3
+	NOTE: https://github.com/NodeRedis/node-redis/commit/2d11b6dc9b9774464a91fb4b448bad8bf699629e
 CVE-2021-29468
 	RESERVED
 CVE-2021-29467 (Wrongthink is an encrypted peer-to-peer chat program. A user could che ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/158439183e659db864d43a9986f1a190eaf08b1e

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/158439183e659db864d43a9986f1a190eaf08b1e
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20210425/899e4fd3/attachment.htm>


More information about the debian-security-tracker-commits mailing list