[Git][security-tracker-team/security-tracker][master] Add references for CVE-2024-1481/freeipa
Salvatore Bonaccorso (@carnil)
carnil at debian.org
Thu Feb 29 20:21:31 GMT 2024
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits:
081a60df by Salvatore Bonaccorso at 2024-02-29T21:20:48+01:00
Add references for CVE-2024-1481/freeipa
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -2737,6 +2737,11 @@ CVE-2024-1669 (Out of bounds memory access in Blink in Google Chrome prior to 12
CVE-2024-1481 [specially crafted HTTP requests potentially lead to DoS or data exposure]
- freeipa <unfixed>
NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=2262169
+ NOTE: https://pagure.io/freeipa/issue/9541
+ NOTE: ipa-4.10: https://pagure.io/freeipa/c/921661fd460799da69043e06e058cff75a64ce3c
+ NOTE: ipa-4.10: https://pagure.io/freeipa/c/204011dc0514681511275a4b70a13bfa85c1a538
+ NOTE: ipa-4.9: https://pagure.io/freeipa/c/b039f3087a13de3f34b230dbe29a7cfb1965700d
+ NOTE: ipa-4.9: https://pagure.io/freeipa/c/96a478bbedd49c31e0f078f00f2d1cb55bb952fd
CVE-2024-26270 (The Account Settings page in Liferay Portal 7.4.3.76 through 7.4.3.99, ...)
NOT-FOR-US: Liferay
CVE-2024-26268 (User enumeration vulnerability in Liferay Portal 7.2.0 through 7.4.3.2 ...)
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/081a60df9816f518589d5baeee056f3e0d78655a
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/081a60df9816f518589d5baeee056f3e0d78655a
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20240229/c8da12aa/attachment.htm>
More information about the debian-security-tracker-commits
mailing list