[Git][security-tracker-team/security-tracker][master] automatic update

Salvatore Bonaccorso (@carnil) carnil at debian.org
Thu Jun 17 09:10:29 BST 2021



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
f4b309a4 by security tracker role at 2021-06-17T08:10:21+00:00
automatic update

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -1,3 +1,5 @@
+CVE-2021-34814
+	RESERVED
 CVE-2021-34813 (Matrix libolm before 3.2.3 allows a malicious Matrix homeserver to cra ...)
 	TODO: check
 CVE-2021-34812
@@ -1337,14 +1339,14 @@ CVE-2021-34206
 	RESERVED
 CVE-2021-34205
 	RESERVED
-CVE-2021-34204
-	RESERVED
+CVE-2021-34204 (D-Link DIR-2640-US 1.01B04 is affected by Insufficiently Protected Cre ...)
+	TODO: check
 CVE-2021-34203 (D-Link DIR-2640-US 1.01B04 is vulnerable to Incorrect Access Control.  ...)
 	NOT-FOR-US: D-Link
 CVE-2021-34202 (There are multiple out-of-bounds vulnerabilities in some processes of  ...)
 	NOT-FOR-US: D-Link
-CVE-2021-34201
-	RESERVED
+CVE-2021-34201 (D-Link DIR-2640-US 1.01B04 is vulnerable to Buffer Overflow. There are ...)
+	TODO: check
 CVE-2021-34200
 	RESERVED
 CVE-2021-34199
@@ -4739,10 +4741,10 @@ CVE-2021-32693
 	RESERVED
 CVE-2021-32692
 	RESERVED
-CVE-2021-32691
-	RESERVED
-CVE-2021-32690
-	RESERVED
+CVE-2021-32691 (Apollos Apps is an open source platform for launching church-related a ...)
+	TODO: check
+CVE-2021-32690 (Helm is a tool for managing Charts (packages of pre-configured Kuberne ...)
+	TODO: check
 CVE-2021-32689
 	RESERVED
 CVE-2021-32688
@@ -5749,12 +5751,12 @@ CVE-2021-32247
 	RESERVED
 CVE-2021-32246
 	RESERVED
-CVE-2021-32245
-	RESERVED
-CVE-2021-32244
-	RESERVED
-CVE-2021-32243
-	RESERVED
+CVE-2021-32245 (In PageKit v1.0.18, a user can upload SVG files in the file upload por ...)
+	TODO: check
+CVE-2021-32244 (Cross Site Scripting (XSS) in Moodle 3.10.3 allows remote attackers to ...)
+	TODO: check
+CVE-2021-32243 (FOGProject v1.5.9 is affected by a File Upload RCE (Authenticated). ...)
+	TODO: check
 CVE-2021-32242
 	RESERVED
 CVE-2021-32241
@@ -7799,10 +7801,10 @@ CVE-2021-31479 (This vulnerability allows remote attackers to execute arbitrary
 	TODO: check
 CVE-2021-31478 (This vulnerability allows remote attackers to execute arbitrary code o ...)
 	TODO: check
-CVE-2021-31477
-	RESERVED
-CVE-2021-31476
-	RESERVED
+CVE-2021-31477 (This vulnerability allows remote attackers to execute arbitrary code o ...)
+	TODO: check
+CVE-2021-31476 (This vulnerability allows remote attackers to execute arbitrary code o ...)
+	TODO: check
 CVE-2021-31475 (This vulnerability allows remote attackers to execute arbitrary code o ...)
 	NOT-FOR-US: SolarWinds
 CVE-2021-31474 (This vulnerability allows remote attackers to execute arbitrary code o ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/f4b309a46e7a3d51a166702167cc903891c8191b

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/f4b309a46e7a3d51a166702167cc903891c8191b
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20210617/e2d8e4f5/attachment-0001.htm>


More information about the debian-security-tracker-commits mailing list