[Git][security-tracker-team/security-tracker][master] automatic update

Salvatore Bonaccorso carnil at debian.org
Sat Feb 20 20:10:32 GMT 2021



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
6fa243ca by security tracker role at 2021-02-20T20:10:25+00:00
automatic update

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -629,6 +629,7 @@ CVE-2021-27213 (config.py in pystemon before 2021-02-13 allows code execution vi
 CVE-2019-25019 (LimeSurvey before 4.0.0-RC4 allows SQL injection via the participant m ...)
 	- limesurvey <itp> (bug #472802)
 CVE-2021-27212 (In OpenLDAP through 2.4.57 and 2.5.x through 2.5.1alpha, an assertion  ...)
+	{DSA-4860-1 DLA-2574-1}
 	- openldap 2.4.57+dfsg-2
 	NOTE: https://bugs.openldap.org/show_bug.cgi?id=9454
 	NOTE: trunk: https://git.openldap.org/openldap/openldap/-/commit/3539fc33212b528c56b716584f2c2994af7c30b0
@@ -2184,8 +2185,8 @@ CVE-2021-26546
 	RESERVED
 CVE-2021-26545
 	RESERVED
-CVE-2021-26544
-	RESERVED
+CVE-2021-26544 (Livy server version 0.7.0-incubating (only) is vulnerable to a cross s ...)
+	TODO: check
 CVE-2021-26543
 	RESERVED
 CVE-2021-26542
@@ -26689,6 +26690,7 @@ CVE-2021-0328 (In onBatchScanReports and deliverBatchScan of GattService.java, t
 CVE-2021-0327 (In getContentProviderImpl of ActivityManagerService.java, there is a p ...)
 	NOT-FOR-US: Android
 CVE-2021-0326 (In p2p_copy_client_info of p2p.c, there is a possible out of bounds wr ...)
+	{DLA-2572-1}
 	- wpa 2:2.9.0-17 (bug #981971)
 	NOTE: https://www.openwall.com/lists/oss-security/2021/02/03/4
 	NOTE: https://w1.fi/security/2020-2/wpa_supplicant-p2p-group-info-processing-vulnerability.txt



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/6fa243ca123e9b14f7b32a64c12d3d05a71a22d0

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/6fa243ca123e9b14f7b32a64c12d3d05a71a22d0
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20210220/76b99247/attachment.htm>


More information about the debian-security-tracker-commits mailing list