[Git][security-tracker-team/security-tracker][master] new yara issue, NFUs (concludes external check)

Moritz Muehlenhoff jmm at debian.org
Fri Feb 19 15:53:31 GMT 2021



Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker


Commits:
c7f6efef by Moritz Muehlenhoff at 2021-02-19T16:52:56+01:00
new yara issue, NFUs (concludes external check)

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -36,8 +36,10 @@ CVE-2019-25020
 	RESERVED
 CVE-2021-3413
 	RESERVED
+	NOT-FOR-US: Red Hat Satellite
 CVE-2021-3412
 	RESERVED
+	NOT-FOR-US: Red Hat 3scale API Management
 CVE-2021-27399
 	RESERVED
 CVE-2021-27398
@@ -1110,6 +1112,9 @@ CVE-2021-26906 (An issue was discovered in res_pjsip_session.c in Digium Asteris
 	TODO: check
 CVE-2021-3402
 	RESERVED
+	- yara <unfixed>
+	NOTE: https://www.openwall.com/lists/oss-security/2021/01/29/2
+	NOTE: https://www.x41-dsec.de/lab/advisories/x41-2021-001-yara/
 CVE-2021-26905 (1Password SCIM Bridge before 1.6.2 mishandles validation of authentica ...)
 	NOT-FOR-US: 1Password SCIM Bridge
 CVE-2021-26904



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/c7f6efefec9383f9f8ea5a0e6ce3f40224012680

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/c7f6efefec9383f9f8ea5a0e6ce3f40224012680
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20210219/2c5e6fc2/attachment.html>


More information about the debian-security-tracker-commits mailing list