[Git][security-tracker-team/security-tracker][master] Update reference for CVE-2021-21424/symfony

Salvatore Bonaccorso (@carnil) carnil at debian.org
Thu May 13 13:21:26 BST 2021



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
facfe7db by Salvatore Bonaccorso at 2021-05-13T14:21:07+02:00
Update reference for CVE-2021-21424/symfony

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -27823,8 +27823,8 @@ CVE-2021-21425 (Grav Admin Plugin is an HTML user interface that provides a way
 CVE-2021-21424 [Prevent user enumeration via response content]
 	RESERVED
 	- symfony 4.4.19+dfsg-2
+	NOTE: https://symfony.com/blog/cve-2021-21424-prevent-user-enumeration-in-authentication-mechanisms
 	NOTE: https://github.com/symfony/symfony/commit/f012eee6c6034a94566dff596fe4e16dfc5d9c1f
-	NOTE: https://github.com/symfony/symfony/commit/d5c0fbac859374754ee14b524a1e157534ee07de
 CVE-2021-21423 (`projen` is a project generation tool that synthesizes project configu ...)
 	NOT-FOR-US: projen
 CVE-2021-21422



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/facfe7db79539f27e133e9a427cbc6de2bae138e

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/facfe7db79539f27e133e9a427cbc6de2bae138e
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20210513/5b2be636/attachment-0001.htm>


More information about the debian-security-tracker-commits mailing list