[Git][security-tracker-team/security-tracker][master] Associate CVE-2023-51651 with aws-sdk-for-php source package

Salvatore Bonaccorso (@carnil) carnil at debian.org
Sat Jan 6 07:58:43 GMT 2024



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
04ec253a by Salvatore Bonaccorso at 2024-01-06T08:57:34+01:00
Associate CVE-2023-51651 with aws-sdk-for-php source package

Thanks: David Prévot

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -1685,7 +1685,9 @@ CVE-2023-6972 (The Backup Migration plugin for WordPress is vulnerable to Path T
 CVE-2023-6971 (The Backup Migration plugin for WordPress is vulnerable to Remote File ...)
 	NOT-FOR-US: WordPress plugin
 CVE-2023-51651 (AWS SDK for PHP is the Amazon Web Services software development kit fo ...)
-	NOT-FOR-US: AWS SDK for PHP
+	- aws-sdk-for-php <removed>
+	NOTE: https://github.com/aws/aws-sdk-php/security/advisories/GHSA-557v-xcg6-rm5m
+	NOTE: https://github.com/aws/aws-sdk-php/commit/aebc9f801438746ac4ade327551576cb75f635f2 (3.288.1)
 CVE-2023-51650 (Hertzbeat is an open source, real-time monitoring system. Prior to ver ...)
 	NOT-FOR-US: Hertzbeat
 CVE-2023-51451 (Symbolicator is a service used in Sentry. Starting in Symbolicator ver ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/04ec253afe05896afde30ebd0b218764abfa6362

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/04ec253afe05896afde30ebd0b218764abfa6362
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20240106/520d4f74/attachment.htm>


More information about the debian-security-tracker-commits mailing list