[Git][security-tracker-team/security-tracker][master] 2 commits: CVE-2021-20326/mongodb EOL on stretch
Emilio Pozuelo Monfort
pochu at debian.org
Fri May 7 10:26:52 BST 2021
Emilio Pozuelo Monfort pushed to branch master at Debian Security Tracker / security-tracker
Commits:
a2ca1b6f by Emilio Pozuelo Monfort at 2021-05-07T11:26:17+02:00
CVE-2021-20326/mongodb EOL on stretch
- - - - -
6406a6f6 by Emilio Pozuelo Monfort at 2021-05-07T11:26:17+02:00
Triage mapserver for stretch
- - - - -
2 changed files:
- data/CVE/list
- data/dla-needed.txt
Changes:
=====================================
data/CVE/list
=====================================
@@ -29416,6 +29416,7 @@ CVE-2021-20327 (A specific version of the Node.js mongodb-client-encryption modu
NOT-FOR-US: Node mongodb-client-encryption
CVE-2021-20326 (A user authorized to performing a specific type of find query may trig ...)
- mongodb <removed>
+ [stretch] - mongodb <end-of-life> (https://lists.debian.org/debian-lts/2020/11/msg00058.html)
NOTE: https://jira.mongodb.org/browse/SERVER-53929
CVE-2021-20325
RESERVED
=====================================
data/dla-needed.txt
=====================================
@@ -78,6 +78,8 @@ linux (Ben Hutchings)
--
linux-4.19 (Ben Hutchings)
--
+mapserver
+--
nvidia-graphics-drivers
NOTE: package is in non-free but also in packages-to-support
NOTE: only CVE‑2021‑1076 seems to be fixed in the R390 branch used in Stretch, no fix available for CVE-2021-1077
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/compare/7925c8e085cde026baf4455d65d3d09eceb90e95...6406a6f65b19215fd78f95c84ef8d1efe2d25b9a
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/compare/7925c8e085cde026baf4455d65d3d09eceb90e95...6406a6f65b19215fd78f95c84ef8d1efe2d25b9a
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20210507/01c4e465/attachment-0001.htm>
More information about the debian-security-tracker-commits
mailing list