[Git][security-tracker-team/security-tracker][master] Add Debian bug reference for CVE-2024-1135/gunicorn
    Salvatore Bonaccorso (@carnil) 
    carnil at debian.org
       
    Tue Apr 16 20:32:13 BST 2024
    
    
  
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits:
f7ce864d by Salvatore Bonaccorso at 2024-04-16T21:31:27+02:00
Add Debian bug reference for CVE-2024-1135/gunicorn
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -160,7 +160,7 @@ CVE-2024-1456 (An S3 bucket takeover vulnerability was identified in the h2oai/h
 CVE-2024-1183 (An SSRF (Server-Side Request Forgery) vulnerability exists in the grad ...)
 	NOT-FOR-US: Gradio
 CVE-2024-1135 (Gunicorn fails to properly validate Transfer-Encoding headers, leading ...)
-	- gunicorn <unfixed>
+	- gunicorn <unfixed> (bug #1069126)
 	NOTE: https://huntr.com/bounties/22158e34-cfd5-41ad-97e0-a780773d96c1
 	NOTE: https://github.com/benoitc/gunicorn/commit/ac29c9b0a758d21f1e0fb3b3457239e523fa9f1d
 CVE-2024-0549 (mintplex-labs/anything-llm is vulnerable to a relative path traversal  ...)
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/f7ce864d8aaa519d2127b7522ae5b8bdd214d329
-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/f7ce864d8aaa519d2127b7522ae5b8bdd214d329
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20240416/ceb7df42/attachment-0001.htm>
    
    
More information about the debian-security-tracker-commits
mailing list