[Git][security-tracker-team/security-tracker][master] Remove notes from CVE-2020-27834

Salvatore Bonaccorso (@carnil) carnil at debian.org
Tue Aug 23 21:18:49 BST 2022



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
04181277 by Salvatore Bonaccorso at 2022-08-23T22:17:50+02:00
Remove notes from CVE-2020-27834

This was a bogus CVE assignment for zabbix and it got now withdrawn by
the assigning CNA.

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -131097,11 +131097,8 @@ CVE-2020-27836 (A flaw was found in cluster-ingress-operator. A change to how th
 CVE-2020-27835 (A use after free in the Linux kernel infiniband hfi1 driver in version ...)
 	- linux 5.9.15-1
 	NOTE: https://git.kernel.org/linus/3d2a9d642512c21a12d19b9250e7a835dcb41a79
-CVE-2020-27834 [attacker can send the same request over and over again without changing the CSRF token]
+CVE-2020-27834
 	REJECTED
-	NOTE: Bogus report for Zabbix, no actionable information:
-	NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=1907497
-	NOTE: http://almorabea.net/cves/zabbix.txt
 CVE-2020-27833 (A Zip Slip vulnerability was found in the oc binary in openshift-clien ...)
 	NOT-FOR-US: OpenShift
 CVE-2020-27832 (A flaw was found in Red Hat Quay, where it has a persistent Cross-site ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/04181277d7c9f23f4d1d9ea1deb9e0d176fc7fce

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/04181277d7c9f23f4d1d9ea1deb9e0d176fc7fce
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20220823/b1f98d61/attachment-0001.htm>


More information about the debian-security-tracker-commits mailing list