[Git][security-tracker-team/security-tracker][master] LTS: update CVE-2020-23226/cacti and drop cacti from dla-needed.txt
Roberto C. Sánchez (@roberto)
roberto at debian.org
Sat Oct 9 22:16:54 BST 2021
Roberto C. Sánchez pushed to branch master at Debian Security Tracker / security-tracker
Commits:
72a9a60f by Roberto C. Sánchez at 2021-10-09T17:16:29-04:00
LTS: update CVE-2020-23226/cacti and drop cacti from dla-needed.txt
- - - - -
2 changed files:
- data/CVE/list
- data/dla-needed.txt
Changes:
=====================================
data/CVE/list
=====================================
@@ -76835,7 +76835,7 @@ CVE-2020-23227
CVE-2020-23226 (Multiple Cross Site Scripting (XSS) vulneratiblities exist in Cacti 1. ...)
- cacti 1.2.13+ds1-1
[buster] - cacti <no-dsa> (Minor issues)
- [stretch] - cacti <no-dsa> (Minor issues)
+ [stretch] - cacti <no-dsa> (Minor issues; also requires semi-intrusive change to be backported)
NOTE: https://github.com/Cacti/cacti/issues/3549
NOTE: https://github.com/Cacti/cacti/commit/8d5fbc48debddc91a66b5aed877060566c6b6232 (1.2.13)
NOTE: https://github.com/Cacti/cacti/commit/74c011ba8635902713c530ded90bc0a045ca461d (1.2.13)
=====================================
data/dla-needed.txt
=====================================
@@ -23,10 +23,6 @@ ansible (Lee Garrett)
NOTE: 20210411: after that LTS. (apo)
NOTE: 20210426: https://people.debian.org/~apo/lts/ansible/
--
-cacti (Roberto C. Sánchez)
- NOTE: 20210829: not really sure whether affected, please recheck
- NOTE: 20210914: still assessing whether or not affected (roberto)
---
debian-archive-keyring (Utkarsh)
NOTE: https://lists.debian.org/debian-lts/2021/08/msg00037.html
NOTE: 20210920: Raphael answered. will backport today. (utkarsh)
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/72a9a60f99c0f24a11b64261d7d541d8146c4ea2
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/72a9a60f99c0f24a11b64261d7d541d8146c4ea2
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20211009/d2cc157b/attachment.htm>
More information about the debian-security-tracker-commits
mailing list