[Git][security-tracker-team/security-tracker][master] Update information for CVE-2023-5764/ansible-core

Salvatore Bonaccorso (@carnil) carnil at debian.org
Sat Dec 16 08:04:35 GMT 2023



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
84706a24 by Salvatore Bonaccorso at 2023-12-16T09:03:53+01:00
Update information for CVE-2023-5764/ansible-core

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -4798,7 +4798,7 @@ CVE-2023-40151 (When user authentication is not enabled the shell can execute co
 CVE-2023-6134 (A flaw was found in Keycloak that prevents certain schemes in redirect ...)
 	NOT-FOR-US: Keycloak
 CVE-2023-5764 (A template injection flaw was found in Ansible where a user's controll ...)
-	- ansible-core <unfixed> (bug #1057427)
+	- ansible-core 2.14.13-1 (bug #1057427)
 	[bookworm] - ansible-core <no-dsa> (Minor issue)
 	- ansible 5.4.0-1
 	[bullseye] - ansible <no-dsa> (Minor issue)
@@ -4807,6 +4807,7 @@ CVE-2023-5764 (A template injection flaw was found in Ansible where a user's con
 	NOTE: https://github.com/ansible/ansible/pull/82293 (stable-2.16)
 	NOTE: https://github.com/ansible/ansible/pull/82294 (stable-2.15)
 	NOTE: https://github.com/ansible/ansible/pull/82295 (stable-2.14)
+	NOTE: https://github.com/ansible/ansible/commit/7239d2d371bc6e274cbb7314e01431adce6ae25a (v2.14.12rc1)
 CVE-2023-41913 (strongSwan before 5.9.12 has a buffer overflow and possible unauthenti ...)
 	{DSA-5560-1 DLA-3663-1}
 	- strongswan 5.9.12-1



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/84706a243f49c2ad91f6e45f9d917b832314a44d

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/84706a243f49c2ad91f6e45f9d917b832314a44d
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20231216/6d4a39ca/attachment.htm>


More information about the debian-security-tracker-commits mailing list