[Git][security-tracker-team/security-tracker][master] new nuget issue (whether that very old is affected remains to be seen)

Moritz Muehlenhoff (@jmm) jmm at debian.org
Sun Jun 18 13:27:47 BST 2023


Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker


Commits:
a6706697 by Moritz Muehlenhoff at 2023-06-18T14:27:01+02:00
new nuget issue (whether that very old is affected remains to be seen)

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -9897,7 +9897,8 @@ CVE-2023-29339
 CVE-2023-29338 (Visual Studio Code Information Disclosure Vulnerability)
 	NOT-FOR-US: Microsoft
 CVE-2023-29337 (NuGet Client Remote Code Execution Vulnerability)
-	TODO: check
+	- nuget <unfixed>
+	NOTE: https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-29337
 CVE-2023-29336 (Win32k Elevation of Privilege Vulnerability)
 	NOT-FOR-US: Microsoft
 CVE-2023-29335 (Microsoft Word Security Feature Bypass Vulnerability)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/a6706697913a9b4f9652f778aff7369689d53fe3

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/a6706697913a9b4f9652f778aff7369689d53fe3
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20230618/3c2eaa27/attachment.htm>


More information about the debian-security-tracker-commits mailing list