[Git][security-tracker-team/security-tracker][master] Add CVE-2021-21290/netty

Salvatore Bonaccorso carnil at debian.org
Wed Feb 10 08:17:21 GMT 2021



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
95272213 by Salvatore Bonaccorso at 2021-02-10T09:16:53+01:00
Add CVE-2021-21290/netty

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -14038,7 +14038,9 @@ CVE-2021-21292 (Traccar is an open source GPS tracking system. In Traccar before
 CVE-2021-21291 (OAuth2 Proxy is an open-source reverse proxy and static file server th ...)
 	TODO: check
 CVE-2021-21290 (Netty is an open-source, asynchronous event-driven network application ...)
-	TODO: check
+	- netty <unfixed>
+	NOTE: https://github.com/netty/netty/security/advisories/GHSA-5mcr-gq6c-3hq2
+	NOTE: https://github.com/netty/netty/commit/c735357bf29d07856ad171c6611a2e1a0e0000ec
 CVE-2021-21289 (Mechanize is an open-source ruby library that makes automated web inte ...)
 	- ruby-mechanize 2.7.7-1
 	NOTE: https://github.com/sparklemotion/mechanize/security/advisories/GHSA-qrqm-fpv6-6r8g



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/952722136e4a7d2e9986a35fdc01b7167cd3405c

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/952722136e4a7d2e9986a35fdc01b7167cd3405c
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20210210/a942a641/attachment.html>


More information about the debian-security-tracker-commits mailing list