[Git][security-tracker-team/security-tracker][master] Triaging CVE-2024-42329/zabbix
Tobias Frost (@tobi)
tobi at debian.org
Mon Dec 2 17:39:43 GMT 2024
Tobias Frost pushed to branch master at Debian Security Tracker / security-tracker
Commits:
7b2363fe by Tobias Frost at 2024-12-02T18:37:45+01:00
Triaging CVE-2024-42329/zabbix
ZBX-25625 -> DEV-3938
Fixed upstream in 7.0.4rc1 (first Debian upload 1:7.0.5-1)
Merge-Commit: https://github.com/zabbix/zabbix/commit/65c4acee83191158522bc75552912fdce2cac9da
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -556,8 +556,9 @@ CVE-2024-42330 (The HttpRequest object allows to get the HTTP headers from the s
NOTE: Fixed by (merge commit): https://github.com/zabbix/zabbix/commit/e82c5941242edc9f4a96e101caaf27e106f73f47 (7.0.4rc1)
NOTE: Fixed by (merge commit): https://github.com/zabbix/zabbix/commit/6dfc7a30e8e3ecd984cb64da6430f4c1fc61ec2d (6.0.34rc1)
CVE-2024-42329 (The webdriver for the Browser object expects an error object to be ini ...)
- - zabbix <unfixed> (bug #1088689)
+ - zabbix 1:7.0.5+dfsg-1 (bug #1088689)
NOTE: https://support.zabbix.com/browse/ZBX-25625
+ NOTE: Fixed by (merge commit): https://github.com/zabbix/zabbix/commit/65c4acee83191158522bc75552912fdce2cac9da (7.0.4rc1)
CVE-2024-42328 (When the webdriver for the Browser object downloads data from a HTTP s ...)
- zabbix <unfixed> (bug #1088689)
NOTE: https://support.zabbix.com/browse/ZBX-25624
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/7b2363fe8e7bfc708f046d2c4d6d0fc35011788f
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/7b2363fe8e7bfc708f046d2c4d6d0fc35011788f
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20241202/54276c9a/attachment-0001.htm>
More information about the debian-security-tracker-commits
mailing list