[Git][security-tracker-team/security-tracker][master] Add Debian bug references for CVE-2023-46129
Salvatore Bonaccorso (@carnil)
carnil at debian.org
Sun Oct 29 10:46:43 GMT 2023
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits:
03b2da62 by Salvatore Bonaccorso at 2023-10-29T11:46:14+01:00
Add Debian bug references for CVE-2023-46129
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -35,11 +35,11 @@ CVE-2023-5426 (The Post Meta Data Manager plugin for WordPress is vulnerable to
CVE-2023-5425 (The Post Meta Data Manager plugin for WordPress is vulnerable to unaut ...)
NOT-FOR-US: WordPress plugin
CVE-2023-46129 [nkeys: xkeys Seal encryption used fixed key for all encryption]
- - golang-github-nats-io-nkeys <unfixed>
+ - golang-github-nats-io-nkeys <unfixed> (bug #1055010)
[bookworm] - golang-github-nats-io-nkeys <not-affected> (Vulnerable code not present)
[bullseye] - golang-github-nats-io-nkeys <not-affected> (Vulnerable code not present)
[buster] - golang-github-nats-io-nkeys <not-affected> (Vulnerable code not present)
- - nats-server <unfixed>
+ - nats-server <unfixed> (bug #1055011)
[bookworm] - nats-server <not-affected> (Vulnerable code not present)
NOTE: https://advisories.nats.io/CVE/secnote-2023-02.txt
NOTE: https://github.com/nats-io/nkeys/security/advisories/GHSA-mr45-rx8q-wcm9
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/03b2da62b32f26bc80b3624a38eb9d34e298df8a
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/03b2da62b32f26bc80b3624a38eb9d34e298df8a
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20231029/2d3ecbc0/attachment-0001.htm>
More information about the debian-security-tracker-commits
mailing list