[Git][security-tracker-team/security-tracker][master] Update assessment for CVE-2023-47430/minidlna

Salvatore Bonaccorso (@carnil) carnil at debian.org
Tue Apr 2 21:00:43 BST 2024



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
edd8bda9 by Salvatore Bonaccorso at 2024-04-02T21:59:55+02:00
Update assessment for CVE-2023-47430/minidlna

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -2338,8 +2338,9 @@ CVE-2023-51416 (Cross-Site Request Forgery (CSRF) vulnerability in EnvialoSimple
 CVE-2023-49839 (Improper Neutralization of Input During Web Page Generation ('Cross-si ...)
 	NOT-FOR-US: WordPress plugin
 CVE-2023-47430 (Stack-buffer-overflow vulnerability in ReadyMedia (MiniDLNA) v1.3.3 al ...)
-	- minidlna <unfixed> (bug #1068148)
+	- minidlna <unfixed> (bug #1068148; unimportant)
 	NOTE: https://sourceforge.net/p/minidlna/bugs/361/
+	NOTE: TiVo support not enabled in the Debian builds
 CVE-2024-30205 (In Emacs before 29.3, Org mode considers contents of remote files to b ...)
 	- emacs 1:29.3+1-1 (bug #1067630)
 	- org-mode 9.6.23+dfsg-1 (bug #1067663)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/edd8bda9feaf4700f29dccb82d47fb5c5a1caaac

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/edd8bda9feaf4700f29dccb82d47fb5c5a1caaac
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20240402/b0e91627/attachment.htm>


More information about the debian-security-tracker-commits mailing list