[Git][security-tracker-team/security-tracker][master] CVE-2020-35652 CVE-2019-15297 CVE-2020-35776 intrusive to backport for stretch
Abhijith PA (@abhijith)
abhijith at debian.org
Sun Apr 3 05:53:24 BST 2022
Abhijith PA pushed to branch master at Debian Security Tracker / security-tracker
Commits:
f230a63f by Abhijith PA at 2022-04-03T10:22:41+05:30
CVE-2020-35652 CVE-2019-15297 CVE-2020-35776 intrusive to backport for stretch
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -86584,7 +86584,7 @@ CVE-2020-35653 (In Pillow before 8.1.0, PcxDecode has a buffer over-read when de
CVE-2020-35652 (An issue was discovered in res_pjsip_diversion.c in Sangoma Asterisk b ...)
- asterisk 1:16.15.1~dfsg-1 (bug #979372)
[buster] - asterisk <no-dsa> (Minor issue)
- [stretch] - asterisk <no-dsa> (Minor issue)
+ [stretch] - asterisk <no-dsa> (Minor issue, intrusive to backport)
NOTE: https://issues.asterisk.org/jira/browse/ASTERISK-29191
NOTE: https://issues.asterisk.org/jira/browse/ASTERISK-29219
NOTE: https://downloads.asterisk.org/pub/security/AST-2020-003.html
@@ -182987,7 +182987,7 @@ CVE-2019-15298 (A problem was found in Centreon Web through 19.04.3. An authenti
CVE-2019-15297 (res_pjsip_t38 in Sangoma Asterisk 13.21-cert4, 15.7.3, and 16.5.0 allo ...)
- asterisk 1:16.10.0~dfsg-1 (low; bug #940060)
[buster] - asterisk 1:16.2.1~dfsg-1+deb10u2
- [stretch] - asterisk <no-dsa> (Minor issue)
+ [stretch] - asterisk <no-dsa> (Minor issue; Intrusive to backport)
[jessie] - asterisk <not-affected> (The vulnerable code is not present)
NOTE: https://downloads.asterisk.org/pub/security/AST-2019-004.html
NOTE: https://issues.asterisk.org/jira/browse/ASTERISK-28495
@@ -192058,7 +192058,7 @@ CVE-2019-12828 (An issue was discovered in Electronic Arts Origin before 10.5.39
CVE-2019-12827 (Buffer overflow in res_pjsip_messaging in Digium Asterisk versions 13. ...)
- asterisk 1:16.2.1~dfsg-2 (bug #931980)
[buster] - asterisk 1:16.2.1~dfsg-1+deb10u1
- [stretch] - asterisk <no-dsa> (Minor issue)
+ [stretch] - asterisk <no-dsa> (Minor issue, intrusive to backport)
[jessie] - asterisk <not-affected> (Vulnerable code not present)
NOTE: https://downloads.asterisk.org/pub/security/AST-2019-002.html
NOTE: https://issues.asterisk.org/jira/browse/ASTERISK-28447
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/f230a63f48063fc7728f0131db9121756e8b1e0d
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/f230a63f48063fc7728f0131db9121756e8b1e0d
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20220403/be4ebab5/attachment.htm>
More information about the debian-security-tracker-commits
mailing list