[Git][security-tracker-team/security-tracker][master] Add fix for CVE-2019-14858 for ansible 2.7

Bastien Roucariès (@rouca) rouca at debian.org
Sun Dec 17 14:28:23 GMT 2023



Bastien Roucariès pushed to branch master at Debian Security Tracker / security-tracker


Commits:
edd6f00c by Bastien Roucariès at 2023-12-17T14:27:47+00:00
Add fix for CVE-2019-14858 for ansible 2.7

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -309401,6 +309401,7 @@ CVE-2019-14858 (A vulnerability was found in Ansible engine 2.x up to 2.8 and An
 	NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=1760593
 	NOTE: https://github.com/ansible/ansible/pull/63405
 	NOTE: Sub-options/sub-specs/sub-parameters introduced in https://github.com/ansible/ansible/commit/25de905c6e05bd6df91f4299628ee6d386d3da50 (2.4)
+	NOTE: Fix for 2.7 https://github.com/ansible/ansible/commit/0fd656e9964a91f2e8b1e9bbf78c74661ab9d37b
 CVE-2019-14857 (A flaw was found in mod_auth_openidc before version 2.4.0.1. An open r ...)
 	{DLA-2298-1 DLA-1996-1}
 	- libapache2-mod-auth-openidc 2.4.0.3-1 (bug #942165)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/edd6f00cf1b1def5610d9b4e50ecf96ac43368a7

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/edd6f00cf1b1def5610d9b4e50ecf96ac43368a7
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20231217/acf6b34d/attachment.htm>


More information about the debian-security-tracker-commits mailing list