[Git][security-tracker-team/security-tracker][master] 2 commits: DLA 2649-1: List CVE-2020-3563{3,4,5} according to previous commit

Salvatore Bonaccorso (@carnil) carnil at debian.org
Wed Sep 1 15:58:53 BST 2021



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
aeb642f2 by Salvatore Bonaccorso at 2021-09-01T16:56:08+02:00
DLA 2649-1: List CVE-2020-3563{3,4,5} according to previous commit

Fixes: dac7bfd50f18 ("Update fixed CVEs for cgal")

- - - - -
bce3521d by Salvatore Bonaccorso at 2021-09-01T16:57:20+02:00
Mark CVE-2020-3563{3,4,5} accordingly as no-dsa

Fixes: dac7bfd50f18 ("Update fixed CVEs for cgal")

- - - - -


2 changed files:

- data/CVE/list
- data/DLA/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -46351,17 +46351,17 @@ CVE-2020-35636 (A code execution vulnerability exists in the Nef polygon-parsing
 CVE-2020-35635 (A code execution vulnerability exists in the Nef polygon-parsing funct ...)
 	{DLA-2649-1}
 	- cgal 5.2-3 (bug #985671)
-	[buster] - cgal
+	[buster] - cgal <no-dsa> (Minor issue)
 	NOTE: https://talosintelligence.com/vulnerability_reports/TALOS-2020-1225
 CVE-2020-35634 (A code execution vulnerability exists in the Nef polygon-parsing funct ...)
 	{DLA-2649-1}
 	- cgal 5.2-3 (bug #985671)
-	[buster] - cgal
+	[buster] - cgal <no-dsa> (Minor issue)
 	NOTE: https://talosintelligence.com/vulnerability_reports/TALOS-2020-1225
 CVE-2020-35633 (A code execution vulnerability exists in the Nef polygon-parsing funct ...)
 	{DLA-2649-1}
 	- cgal 5.2-3 (bug #985671)
-	[buster] - cgal
+	[buster] - cgal <no-dsa> (Minor issue)
 	NOTE: https://talosintelligence.com/vulnerability_reports/TALOS-2020-1225
 CVE-2020-35632
 	RESERVED


=====================================
data/DLA/list
=====================================
@@ -314,7 +314,7 @@
 	{CVE-2020-28007 CVE-2020-28008 CVE-2020-28009 CVE-2020-28011 CVE-2020-28012 CVE-2020-28013 CVE-2020-28014 CVE-2020-28015 CVE-2020-28017 CVE-2020-28019 CVE-2020-28020 CVE-2020-28021 CVE-2020-28022 CVE-2020-28023 CVE-2020-28024 CVE-2020-28025 CVE-2020-28026}
 	[stretch] - exim4 4.89-2+deb9u8
 [04 May 2021] DLA-2649-1 cgal - security update
-	{CVE-2020-28601 CVE-2020-28636 CVE-2020-35628 CVE-2020-35636}
+	{CVE-2020-28601 CVE-2020-35633 CVE-2020-35634 CVE-2020-35635 CVE-2020-28636 CVE-2020-35628 CVE-2020-35636}
 	[stretch] - cgal 4.9-1+deb9u1
 [05 May 2021] DLA-2648-1 mediawiki - security update
 	{CVE-2021-20270 CVE-2021-27291 CVE-2021-30152 CVE-2021-30155 CVE-2021-30158 CVE-2021-30159}



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/compare/dac7bfd50f18d6f12af8be5590a7fd55da57078b...bce3521d0bb21c592dd8408a038be4764409f185

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/compare/dac7bfd50f18d6f12af8be5590a7fd55da57078b...bce3521d0bb21c592dd8408a038be4764409f185
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20210901/6152a285/attachment-0001.htm>


More information about the debian-security-tracker-commits mailing list