[Git][security-tracker-team/security-tracker][master] Add CVE-2024-1329/nomad

Salvatore Bonaccorso (@carnil) carnil at debian.org
Thu Feb 8 21:27:58 GMT 2024



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
a4469e85 by Salvatore Bonaccorso at 2024-02-08T22:27:06+01:00
Add CVE-2024-1329/nomad

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -58,7 +58,8 @@ CVE-2024-22795 (Insecure Permissions vulnerability in Forescout SecureConnector
 CVE-2024-22464 (Dell EMC AppSync, versions from 4.2.0.0 to 4.6.0.0 including all Servi ...)
 	NOT-FOR-US: Dell EMC AppSync
 CVE-2024-1329 (HashiCorp Nomad and Nomad Enterprise 1.5.13 up to 1.6.6, and 1.7.3 tem ...)
-	TODO: check
+	- nomad <removed>
+	NOTE: https://discuss.hashicorp.com/t/hcsec-2024-03-nomad-vulnerable-to-arbitrary-write-through-symlink-attack
 CVE-2024-1207 (The WP Booking Calendar plugin for WordPress is vulnerable to SQL Inje ...)
 	NOT-FOR-US: WordPress plugin
 CVE-2024-1150 (Improper Verification of Cryptographic Signature vulnerability in Snow ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/a4469e85cf9c54fe0e395f61c0b83f878c5059d3

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/a4469e85cf9c54fe0e395f61c0b83f878c5059d3
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20240208/ad371eff/attachment-0001.htm>


More information about the debian-security-tracker-commits mailing list