[Git][security-tracker-team/security-tracker][master] gitlab fixed in sid

Moritz Muehlenhoff (@jmm) jmm at debian.org
Tue Jan 23 10:43:46 GMT 2024



Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker


Commits:
5599f978 by Moritz Muehlenhoff at 2024-01-23T11:41:59+01:00
gitlab fixed in sid

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -1770,11 +1770,11 @@ CVE-2024-23659 (SPIP before 4.1.14 and 4.2.x before 4.2.8 allows XSS via the nam
 	NOTE: https://git.spip.net/spip/bigup/commit/0757f015717cb72b84dba0e9a375ec71caddf1c2
 	NOTE: https://blog.spip.net/Mise-a-jour-de-maintenance-et-securite-sortie-de-SPIP-4-2-8-SPIP-4-1-14.html?lang=fr
 CVE-2023-6955 (An improper access control vulnerability exists in GitLab Remote Devel ...)
-	- gitlab <unfixed>
+	- gitlab 16.6.5-3
 CVE-2023-4812 (An issue has been discovered in GitLab EE affecting all versions start ...)
-	- gitlab <unfixed>
+	- gitlab 16.6.5-3
 CVE-2023-5356 (Incorrect authorization checks in GitLab CE/EE from all versions start ...)
-	- gitlab <unfixed>
+	- gitlab 16.6.5-3
 CVE-2023-7028 (An issue has been discovered in GitLab CE/EE affecting all versions fr ...)
 	- gitlab 16.4.5+ds2-1
 CVE-2024-23179 (An issue was discovered in the GlobalBlocking extension in MediaWiki b ...)
@@ -41547,7 +41547,7 @@ CVE-2023-2032 (The Custom 404 Pro WordPress plugin before 3.8.1 does not properl
 CVE-2023-2031 (The Locatoraid Store Locator plugin for WordPress is vulnerable to Sto ...)
 	NOT-FOR-US: WordPress plugin
 CVE-2023-2030 (An issue has been discovered in GitLab CE/EE affecting all versions fr ...)
-	- gitlab <unfixed>
+	- gitlab 16.6.5-3
 CVE-2023-2029 (The PrePost SEO WordPress plugin through 3.0 does not properly sanitiz ...)
 	NOT-FOR-US: WordPress plugin
 CVE-2023-2028 (The Call Now Accessibility Button WordPress plugin before 1.1 does not ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/5599f97838d4d1c8b202c5c555348eacfcec95de

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/5599f97838d4d1c8b202c5c555348eacfcec95de
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20240123/7be65169/attachment-0001.htm>


More information about the debian-security-tracker-commits mailing list