[Git][security-tracker-team/security-tracker][master] Mark CVE-2024-34462/sogo as postponed for buster

Utkarsh Gupta (@utkarsh) utkarsh at debian.org
Mon May 20 02:13:20 BST 2024



Utkarsh Gupta pushed to branch master at Debian Security Tracker / security-tracker


Commits:
3a0e3a0b by Utkarsh Gupta at 2024-05-20T06:42:58+05:30
Mark CVE-2024-34462/sogo as postponed for buster

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -5222,6 +5222,7 @@ CVE-2024-34467 (ThinkPHP 8.0.3 allows remote attackers to discover the PHPSESSIO
 	NOT-FOR-US: ThinkPHP
 CVE-2024-34462 (Alinto SOGo through 5.10.0 allows XSS during attachment preview.)
 	- sogo <unfixed> (bug #1071163)
+	[buster] - sogo <postponed> (Minor issue)
 	NOTE: https://github.com/Alinto/sogo/commit/2e37e59ed140d4aee0ff2fba579ca5f83f2c5920
 CVE-2023-52729 (TCPServer.cpp in SimpleNetwork through 29bc615 has an off-by-one error ...)
 	NOT-FOR-US: SimpleNetwork



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/3a0e3a0b0525f2ba6829e40fad6571b11a20f583

-- 
This project does not include diff previews in email notifications.
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/3a0e3a0b0525f2ba6829e40fad6571b11a20f583
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20240520/a10f2fca/attachment.htm>


More information about the debian-security-tracker-commits mailing list