[Git][security-tracker-team/security-tracker][master] CVE-2018-17960/ckeditor: stretch ignored

Sylvain Beucler (@beuc) beuc at debian.org
Mon May 2 18:15:13 BST 2022



Sylvain Beucler pushed to branch master at Debian Security Tracker / security-tracker


Commits:
9c0b365a by Sylvain Beucler at 2022-05-02T19:14:53+02:00
CVE-2018-17960/ckeditor: stretch ignored

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -238454,7 +238454,7 @@ CVE-2018-17961 (Artifex Ghostscript 9.25 and earlier allows attackers to bypass
 	NOTE: https://git.ghostscript.com/?p=ghostpdl.git;a=commitdiff;h=a5a9bf8c6a63aa4ac6874234fe8cd63e72077291
 CVE-2018-17960 (CKEditor 4.x before 4.11.0 allows user-assisted XSS involving a source ...)
 	- ckeditor 4.11.1+dfsg-1 (low)
-	[stretch] - ckeditor <no-dsa> (Minor issue)
+	[stretch] - ckeditor <ignored> (Minor issue, XSS through direct copy/paste by victim, no identified patch)
 	[jessie] - ckeditor <ignored> (Minor issue)
 	- fckeditor <removed>
 CVE-2018-17959



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/9c0b365ac7b717e6dd6136a84b07929769708ad0

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/9c0b365ac7b717e6dd6136a84b07929769708ad0
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20220502/f950fb40/attachment.htm>


More information about the debian-security-tracker-commits mailing list