[Git][security-tracker-team/security-tracker][master] Add CVE-2021-4333{1,2}/mailman

Salvatore Bonaccorso (@carnil) carnil at debian.org
Sat Nov 13 08:47:12 GMT 2021



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
9f3e3e08 by Salvatore Bonaccorso at 2021-11-13T09:46:50+01:00
Add CVE-2021-4333{1,2}/mailman

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -701,9 +701,15 @@ CVE-2021-43334
 CVE-2021-43333
 	RESERVED
 CVE-2021-43332 (In GNU Mailman before 2.1.36, the CSRF token for the Cgi/admindb.py ad ...)
-	TODO: check
+	- mailman <removed>
+	[buster] - mailman <no-dsa> (Minor issue)
+	NOTE: https://mail.python.org/archives/list/mailman-announce@python.org/message/I2X7PSFXIEPLM3UMKZMGOEO3UFYETGRL/
+	NOTE: https://bugs.launchpad.net/mailman/+bug/1949403
 CVE-2021-43331 (In GNU Mailman before 2.1.36, a crafted URL to the Cgi/options.py user ...)
-	TODO: check
+	- mailman <removed>
+	[buster] - mailman <no-dsa> (Minor issue)
+	NOTE: https://mail.python.org/archives/list/mailman-announce@python.org/message/I2X7PSFXIEPLM3UMKZMGOEO3UFYETGRL/
+	NOTE: https://bugs.launchpad.net/mailman/+bug/1949401
 CVE-2021-43330
 	RESERVED
 CVE-2021-43329



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/9f3e3e08af130a27252a38f9e84fe1b6a6bdfb07

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/9f3e3e08af130a27252a38f9e84fe1b6a6bdfb07
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20211113/3604acce/attachment.htm>


More information about the debian-security-tracker-commits mailing list