[Git][security-tracker-team/security-tracker][master] bullseye/bookworm triage
Moritz Muehlenhoff (@jmm)
jmm at debian.org
Mon Nov 27 16:12:59 GMT 2023
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker
Commits:
35cf6256 by Moritz Muehlenhoff at 2023-11-27T17:11:29+01:00
bullseye/bookworm triage
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -2943,6 +2943,8 @@ CVE-2023-47004 (Buffer Overflow vulnerability in Redis RedisGraph v.2.x through
NOT-FOR-US: RedisGraph
CVE-2023-46998 (Cross Site Scripting vulnerability in BootBox Bootbox.js v.3.2 through ...)
- libjs-bootbox <unfixed> (bug #1055612)
+ [bookworm] - libjs-bootbox <no-dsa> (Minor issue)
+ [bullseye] - libjs-bootbox <no-dsa> (Minor issue)
NOTE: https://github.com/bootboxjs/bootbox/issues/661
CVE-2023-46845 (EC-CUBE 3 series (3.0.0 to 3.0.18-p6) and 4 series (4.0.0 to 4.0.6-p3, ...)
NOT-FOR-US: EC-CUBE
@@ -6489,6 +6491,7 @@ CVE-2023-42497 (Reflected cross-site scripting (XSS) vulnerability on the Export
NOT-FOR-US: Liferay Portal
CVE-2023-42459 (Fast DDS is a C++ implementation of the DDS (Data Distribution Service ...)
- fastdds 2.11.2+ds-6 (bug #1054163)
+ [bullseye] - fastdds <not-affected> (Vulnerable code not present)
NOTE: https://github.com/eProsima/Fast-DDS/security/advisories/GHSA-gq8g-fj58-22gm
NOTE: https://github.com/eProsima/Fast-DDS/issues/3207
NOTE: https://github.com/eProsima/Fast-DDS/pull/3824
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/35cf6256accda513d05dc3bac764eff195fe21ad
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/35cf6256accda513d05dc3bac764eff195fe21ad
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20231127/8d806457/attachment.htm>
More information about the debian-security-tracker-commits
mailing list