[Git][security-tracker-team/security-tracker][master] Update status for CVE-2021-37156/redmine

Salvatore Bonaccorso (@carnil) carnil at debian.org
Wed Aug 11 20:07:07 BST 2021



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
f0c80900 by Salvatore Bonaccorso at 2021-08-11T21:06:17+02:00
Update status for CVE-2021-37156/redmine

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -3088,8 +3088,9 @@ CVE-2021-37158
 CVE-2021-37157
 	RESERVED
 CVE-2021-37156 (Redmine 4.2.0 and 4.2.1 allow existing user sessions to continue upon  ...)
-	- redmine <unfixed>
+	- redmine <not-affected> (Only affected 4.2.0 and 4.2.1 upstream)
 	NOTE: https://www.redmine.org/projects/redmine/wiki/Security_Advisories
+	NOTE: https://github.com/redmine/redmine/commit/ee0d822517154878a2ad33be66b820c6b68d077b
 CVE-2021-37155 (wolfSSL 4.6.x through 4.7.x before 4.8.0 does not produce a failure ou ...)
 	- wolfssl <unfixed> (bug #991443)
 	[bullseye] - wolfssl <no-dsa> (Minor issue)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/f0c80900f0d8ed92556aa03b903b6785a54fe6e9

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/f0c80900f0d8ed92556aa03b903b6785a54fe6e9
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20210811/f79006d0/attachment.htm>


More information about the debian-security-tracker-commits mailing list