[Git][security-tracker-team/security-tracker][master] new rust-pleaser issue

Moritz Muehlenhoff (@jmm) jmm at debian.org
Fri Oct 20 17:39:24 BST 2023



Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker


Commits:
254e6fb4 by Moritz Mühlenhoff at 2023-10-20T18:38:14+02:00
new rust-pleaser issue

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -107,7 +107,9 @@ CVE-2023-4271 (The Photospace Responsive plugin for WordPress is vulnerable to S
 CVE-2023-4021 (The Modern Events Calendar lite plugin for WordPress is vulnerable to  ...)
 	NOT-FOR-US: WordPress plugin
 CVE-2023-46277 (please (aka pleaser) through 0.5.4 allows privilege escalation through ...)
-	TODO: check
+	- rust-pleaser <unfixed>
+	NOTE: https://gitlab.com/edneville/please/-/issues/13
+	NOTE: https://rustsec.org/advisories/RUSTSEC-2023-0066.html
 CVE-2023-46267 (Roundcube before 1.4.15, 1.5.x before 1.5.5, and 1.6.x before 1.6.4 al ...)
 	TODO: check
 CVE-2023-46115 (Tauri is a framework for building binaries for all major desktop platf ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/254e6fb4266880ffab643c120922780a6bc5f176

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/254e6fb4266880ffab643c120922780a6bc5f176
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20231020/ce7077a1/attachment-0001.htm>


More information about the debian-security-tracker-commits mailing list