[Git][security-tracker-team/security-tracker][master] 2 commits: mark CVE-2024-53008 as not-affected in Bullseye

Thorsten Alteholz (@alteholz) alteholz at debian.org
Fri Dec 27 23:42:49 GMT 2024



Thorsten Alteholz pushed to branch master at Debian Security Tracker / security-tracker


Commits:
d893aea8 by Thorsten Alteholz at 2024-12-28T00:42:10+01:00
mark CVE-2024-53008 as not-affected in Bullseye

- - - - -
d31fb39c by Thorsten Alteholz at 2024-12-28T00:42:37+01:00
no remaining issues

- - - - -


2 changed files:

- data/CVE/list
- data/dla-needed.txt


Changes:

=====================================
data/CVE/list
=====================================
@@ -7372,6 +7372,7 @@ CVE-2024-53260 (Autolab is a course management service that enables auto-graded
 	NOT-FOR-US: Autolab
 CVE-2024-53008 (Inconsistent interpretation of HTTP requests ('HTTP Request/Response S ...)
 	- haproxy 2.9.10-1
+	[bullseye] - haproxy <not-affected> (Vulnerabel code added in v2.6)
 	NOTE: https://git.haproxy.org/?p=haproxy-2.6.git;a=commit;h=fa8b221756076186315b6bbf17ef697ec1ef5695 (v2.6.19)
 	NOTE: https://git.haproxy.org/?p=haproxy-2.6.git;a=commit;h=94d74d24ec9c3710334ab2239b1996faab3ad01e (v2.6.19)
 	NOTE: https://git.haproxy.org/?p=haproxy-2.8.git;a=commit;h=94d305eaffc83dff3f59f5c2a3fbeb4710efa39a (v2.8.11)


=====================================
data/dla-needed.txt
=====================================
@@ -108,10 +108,6 @@ gst-plugins-good1.0 (Adrian Bunk)
   NOTE: 20241213: Added by Front-Desk (lamby)
   NOTE: 20241213: See also gst-plugins-base1.0 (lamby)
 --
-haproxy (Thorsten Alteholz)
-  NOTE: 20241201: Added by Front-Desk (ta)
-  NOTE: 20241215: testing package
---
 jetty9
   NOTE: 20241110: Added by Front-Desk (apo)
 --



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/compare/ad22a7c4528fdc7875549daece2d3d1b04c1ead0...d31fb39c62aba86460fbcec043d984048bb3e132

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/compare/ad22a7c4528fdc7875549daece2d3d1b04c1ead0...d31fb39c62aba86460fbcec043d984048bb3e132
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20241227/f25904fc/attachment.htm>


More information about the debian-security-tracker-commits mailing list