Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits: 1047d7a3 by Salvatore Bonaccorso at 2020-11-16T20:08:42+01:00 libproxy: CVE-2020-26154 and CVE-2020-25219 fixed via unstable - - - - - 1 changed file: - data/CVE/list Changes: ===================================== data/CVE/list ===================================== @@ -9056,7 +9056,7 @@ CVE-2020-26149 (NATS nats.js before 2.0.0-209, nats.ws before 1.0.0-111, and nat NOT-FOR-US: nats.js CVE-2020-26154 (url.cpp in libproxy through 0.4.15 is prone to a buffer overflow when ...) {DLA-2450-1} - - libproxy <unfixed> (bug #968366) + - libproxy 0.4.15-15 (bug #968366) NOTE: https://github.com/libproxy/libproxy/pull/126 NOTE: https://github.com/libproxy/libproxy/commit/4411b523545b22022b4be7d0cac25aa170ae1d3e CVE-2020-26148 (md_push_block_bytes in md4c.c in md4c 0.4.5 allows attackers to trigge ...) @@ -11257,7 +11257,7 @@ CVE-2020-25220 (The Linux kernel 4.9.x before 4.9.233, 4.14.x before 4.14.194, a NOTE: https://www.spinics.net/lists/stable/msg405099.html CVE-2020-25219 (url::recvline in url.cpp in libproxy 0.4.x through 0.4.15 allows a rem ...) {DLA-2372-1} - - libproxy <unfixed> (bug #971394) + - libproxy 0.4.15-15 (bug #971394) NOTE: https://github.com/libproxy/libproxy/issues/134 NOTE: https://github.com/libproxy/libproxy/commit/a83dae404feac517695c23ff43ce1e116e2bfbe0 CVE-2020-25218 View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/1047d7a379f53e6de39ac68b19d58ec601e2bd5a -- View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/1047d7a379f53e6de39ac68b19d58ec601e2bd5a You're receiving this email because of your account on salsa.debian.org.
_______________________________________________ debian-security-tracker-commits mailing list debian-security-tracker-commits@alioth-lists.debian.net https://alioth-lists.debian.net/cgi-bin/mailman/listinfo/debian-security-tracker-commits