[Git][security-tracker-team/security-tracker][master] Triage CVE-2020-8031 in open-build-service for stretch LTS>

Chris Lamb lamby at debian.org
Tue Mar 16 11:00:26 GMT 2021



Chris Lamb pushed to branch master at Debian Security Tracker / security-tracker


Commits:
dbc0ad0a by Chris Lamb at 2021-03-16T10:59:05+00:00
Triage CVE-2020-8031 in open-build-service for stretch LTS>

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -79101,6 +79101,7 @@ CVE-2020-8032 (A Insecure Temporary File vulnerability in the packaging of cyrus
 	- cyrus-sasl2 <not-affected> (openSUSE specific packaging issue)
 CVE-2020-8031 (A Improper Neutralization of Input During Web Page Generation ('Cross- ...)
 	- open-build-service <unfixed> (bug #983576)
+	[stretch] - open-build-service <postponed> (Minor issue, XSS in web app)
 	NOTE: https://bugzilla.suse.com/show_bug.cgi?id=1178880
 CVE-2020-8030 (A Insecure Temporary File vulnerability in skuba of SUSE CaaS Platform ...)
 	NOT-FOR-US: SuSE CaaS



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/dbc0ad0a3f02541f17760a48a453e321b158ff38

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/dbc0ad0a3f02541f17760a48a453e321b158ff38
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20210316/a932df37/attachment-0001.htm>


More information about the debian-security-tracker-commits mailing list