[Git][security-tracker-team/security-tracker][master] Add CVE-2022-41941/glpi

Salvatore Bonaccorso (@carnil) carnil at debian.org
Sat Feb 11 08:27:59 GMT 2023



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
650f630a by Salvatore Bonaccorso at 2023-02-11T09:27:25+01:00
Add CVE-2022-41941/glpi

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -31763,7 +31763,9 @@ CVE-2022-41943 (sourcegraph is a code intelligence platform. As a site admin it
 CVE-2022-41942 (Sourcegraph is a code intelligence platform. In versions prior to 4.1. ...)
 	NOT-FOR-US: Sourcegraph
 CVE-2022-41941 (GLPI is a Free Asset and IT Management Software package. Versions 10.0 ...)
-	TODO: check
+	- glpi <removed> (unimportant)
+	NOTE: https://github.com/glpi-project/glpi/security/advisories/GHSA-qqqm-7h6v-7cf4
+	NOTE: Only supported behind an authenticated HTTP zone
 CVE-2022-41940 (Engine.IO is the implementation of transport-based cross-browser/cross ...)
 	NOT-FOR-US: Engine.io
 CVE-2022-41939 (knative.dev/func is is a client library and CLI enabling the developme ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/650f630a662dfc00f96916d3cd1b5223f452e694

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/650f630a662dfc00f96916d3cd1b5223f452e694
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20230211/05401ae9/attachment-0001.htm>


More information about the debian-security-tracker-commits mailing list