[Git][security-tracker-team/security-tracker][master] automatic update

Salvatore Bonaccorso carnil at debian.org
Sun Feb 14 08:10:25 GMT 2021



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
4a759b73 by security tracker role at 2021-02-14T08:10:18+00:00
automatic update

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -1,4 +1,12 @@
-CVE-2021-27212 [assertion failure in the issuerAndThisUpdateCheck function]
+CVE-2021-27215
+	RESERVED
+CVE-2021-27214
+	RESERVED
+CVE-2021-27213 (config.py in pystemon before 2021-02-13 allows code execution via YAML ...)
+	TODO: check
+CVE-2019-25019 (LimeSurvey before 4.0.0-RC4 allows SQL injection via the participant m ...)
+	TODO: check
+CVE-2021-27212 (In OpenLDAP through 2.4.57 and 2.5.x through 2.5.1alpha, an assertion  ...)
 	- openldap <unfixed>
 	NOTE: https://bugs.openldap.org/show_bug.cgi?id=9454
 	NOTE: trunk: https://git.openldap.org/openldap/openldap/-/commit/3539fc33212b528c56b716584f2c2994af7c30b0
@@ -609,8 +617,8 @@ CVE-2021-26931
 	RESERVED
 CVE-2021-26930
 	RESERVED
-CVE-2021-26929
-	RESERVED
+CVE-2021-26929 (An XSS issue was discovered in Horde Groupware Webmail Edition through ...)
+	TODO: check
 CVE-2021-26928
 	RESERVED
 CVE-2021-26927



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/4a759b732b6a6d48abd37ec3943cf79f0c18e8d3

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/4a759b732b6a6d48abd37ec3943cf79f0c18e8d3
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20210214/99268eef/attachment.html>


More information about the debian-security-tracker-commits mailing list