[Git][security-tracker-team/security-tracker][master] Process two more Mattermost issues
Salvatore Bonaccorso (@carnil)
carnil at debian.org
Mon Nov 27 21:02:22 GMT 2023
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits:
fa15386d by Salvatore Bonaccorso at 2023-11-27T22:01:34+01:00
Process two more Mattermost issues
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -86,7 +86,7 @@ CVE-2023-47865 (Mattermost fails to check if hardened mode is enabled when overr
CVE-2023-47168 (Mattermost fails to properly check a redirect URL parameter allowing f ...)
- mattermost-server <itp> (bug #823556)
CVE-2023-45223 (Mattermost fails to properly validate the "Show Full Name" option in a ...)
- TODO: check
+ - mattermost-server <itp> (bug #823556)
CVE-2023-43754 (Mattermost fails to check whether the \u201cAllow users to view archiv ...)
TODO: check
CVE-2023-42000 (Arcserve UDP prior to 9.2 contains a path traversal vulnerability in c ...)
@@ -98,7 +98,7 @@ CVE-2023-41998 (Arcserve UDP prior to 9.2 contained a vulnerability in thecom.ca
CVE-2023-41257 (A type confusion vulnerability exists in the way Foxit Reader 12.1.2.1 ...)
TODO: check
CVE-2023-40703 (Mattermost fails to properly limit the characters allowed in different ...)
- TODO: check
+ - mattermost-server <itp> (bug #823556)
CVE-2023-40194 (An arbitrary file creation vulnerability exists in the Javascript expo ...)
TODO: check
CVE-2023-39542 (A code execution vulnerability exists in the Javascript saveAs API of ...)
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/fa15386d6c6c7f8e31d7363ebce8910a2d2adea3
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/fa15386d6c6c7f8e31d7363ebce8910a2d2adea3
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20231127/429b4578/attachment.htm>
More information about the debian-security-tracker-commits
mailing list