[Git][security-tracker-team/security-tracker][master] Disentangle multiple projects called gibbon

Neil Williams (@codehelp) codehelp at debian.org
Thu May 26 09:15:00 BST 2022



Neil Williams pushed to branch master at Debian Security Tracker / security-tracker


Commits:
52ea832f by Neil Williams at 2022-05-26T09:14:44+01:00
Disentangle multiple projects called gibbon

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -12399,7 +12399,7 @@ CVE-2022-27313 (An arbitrary file deletion vulnerability in Gitea v1.16.3 allows
 CVE-2022-27312
 	RESERVED
 CVE-2022-27311 (Gibbon v3.4.4 and below allows attackers to execute a Server-Side Requ ...)
-	NOT-FOR-US: Gibbon
+	NOT-FOR-US: amro/Gibbon
 CVE-2022-27310
 	RESERVED
 CVE-2022-27309
@@ -12411,7 +12411,7 @@ CVE-2022-27307
 CVE-2022-27306
 	REJECTED
 CVE-2022-27305 (Gibbon v23 does not generate a new session ID cookie after a user auth ...)
-	TODO: check
+	NOT-FOR-US: GibbonEdu/core
 CVE-2022-27304 (Student Grading System v1.0 was discovered to contain a SQL injection  ...)
 	NOT-FOR-US: Student Grading System
 CVE-2022-27303
@@ -49071,7 +49071,7 @@ CVE-2021-40216
 CVE-2021-40215
 	RESERVED
 CVE-2021-40214 (Gibbon v22.0.00 suffers from a stored XSS vulnerability within the wal ...)
-	NOT-FOR-US: Gibbon
+	NOT-FOR-US: GibbonEdu/core
 CVE-2021-40213
 	RESERVED
 CVE-2021-40212



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/52ea832f33ae0083a552ed86daa81bb4f2e99bd5

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/52ea832f33ae0083a552ed86daa81bb4f2e99bd5
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20220526/79c24560/attachment-0001.htm>


More information about the debian-security-tracker-commits mailing list