[Git][security-tracker-team/security-tracker][master] Add some new glpi issues

Salvatore Bonaccorso (@carnil) carnil at debian.org
Wed Sep 15 21:38:35 BST 2021



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
556041d0 by Salvatore Bonaccorso at 2021-09-15T22:38:12+02:00
Add some new glpi issues

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -4671,11 +4671,17 @@ CVE-2021-39212 (ImageMagick is free software delivered as a ready-to-run binary
 	NOTE: https://github.com/ImageMagick/ImageMagick/commit/01faddbe2711a4156180c4a92837e2f23683cc68
 	NOTE: https://github.com/ImageMagick/ImageMagick/commit/35893e7cad78ce461fcaffa56076c11700ba5e4e
 CVE-2021-39211 (GLPI is a free Asset and IT management software package. Starting in v ...)
-	TODO: check
+	- glpi <removed> (unimportant)
+	NOTE: https://github.com/glpi-project/glpi/security/advisories/GHSA-xx66-v3g5-w825
+	NOTE: Only supported behind an authenticated HTTP zone
 CVE-2021-39210 (GLPI is a free Asset and IT management software package. In versions p ...)
-	TODO: check
+	- glpi <removed> (unimportant)
+	NOTE: https://github.com/glpi-project/glpi/security/advisories/GHSA-hwxq-4c5f-m4v2
+	NOTE: Only supported behind an authenticated HTTP zone
 CVE-2021-39209 (GLPI is a free Asset and IT management software package. In versions p ...)
-	TODO: check
+	- glpi <removed> (unimportant)
+	NOTE: https://github.com/glpi-project/glpi/security/advisories/GHSA-5qpf-32w7-c56p
+	NOTE: Only supported behind an authenticated HTTP zone
 CVE-2021-39208
 	RESERVED
 CVE-2021-39207 (parlai is a framework for training and evaluating AI models on a varie ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/556041d0c0dfd709a743009c6493f0cafa831ddf

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/556041d0c0dfd709a743009c6493f0cafa831ddf
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20210915/71b14b9b/attachment-0001.htm>


More information about the debian-security-tracker-commits mailing list