[Git][security-tracker-team/security-tracker][master] Track fixed version for CVE-2024-1135/gunicorn via unstable

Salvatore Bonaccorso (@carnil) carnil at debian.org
Mon May 27 19:25:42 BST 2024



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
31dbe789 by Salvatore Bonaccorso at 2024-05-27T20:23:55+02:00
Track fixed version for CVE-2024-1135/gunicorn via unstable

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -16490,7 +16490,7 @@ CVE-2024-1456 (An S3 bucket takeover vulnerability was identified in the h2oai/h
 CVE-2024-1183 (An SSRF (Server-Side Request Forgery) vulnerability exists in the grad ...)
 	NOT-FOR-US: Gradio
 CVE-2024-1135 (Gunicorn fails to properly validate Transfer-Encoding headers, leading ...)
-	- gunicorn <unfixed> (bug #1069126)
+	- gunicorn 22.0.0-1 (bug #1069126)
 	[bookworm] - gunicorn <no-dsa> (Minor issue)
 	[bullseye] - gunicorn <no-dsa> (Minor issue)
 	[buster] - gunicorn <postponed> (Minor issue)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/31dbe78998411673120f9945931ce15c4ca4acc5

-- 
This project does not include diff previews in email notifications.
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/31dbe78998411673120f9945931ce15c4ca4acc5
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20240527/8b6f972b/attachment.htm>


More information about the debian-security-tracker-commits mailing list