Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits: 735eaa5b by Salvatore Bonaccorso at 2023-07-09T21:11:41+02:00 Remove annotation from CVE-2023-34254 of unimportant severity As this does affect the Agent, the usual reasoning does not apply. Reported-by: Moritz Mühlenhoff <j...@debian.org> Fixes: 967c8d344ba5 ("Mark glpi issues as unimportant") - - - - - 1 changed file: - data/CVE/list Changes: ===================================== data/CVE/list ===================================== @@ -1410,9 +1410,8 @@ CVE-2023-35163 (Vega is a decentralized trading platform that allows pseudo-anon CVE-2023-35154 (Knowage is an open source analytics and business intelligence suite. S ...) NOT-FOR-US: Knowage CVE-2023-34254 (The GLPI Agent is a generic management agent. Prior to version 1.5, if ...) - - glpi <removed> (unimportant) + - glpi <removed> NOTE: https://github.com/glpi-project/glpi-agent/security/advisories/GHSA-39vc-hxgm-j465 - NOTE: Only supported behind an authenticated HTTP zone CVE-2023-3394 (Session Fixation in GitHub repository fossbilling/fossbilling prior to ...) NOT-FOR-US: fossbilling CVE-2023-3393 (Code Injection in GitHub repository fossbilling/fossbilling prior to 0 ...) View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/735eaa5b947fb2333f35c050777192aee1a0e9fc -- View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/735eaa5b947fb2333f35c050777192aee1a0e9fc You're receiving this email because of your account on salsa.debian.org.
_______________________________________________ debian-security-tracker-commits mailing list debian-security-tracker-commits@alioth-lists.debian.net https://alioth-lists.debian.net/cgi-bin/mailman/listinfo/debian-security-tracker-commits