Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits: 8e33624c by Salvatore Bonaccorso at 2018-02-04T09:01:38+01:00 CVE-2018-6596/django-anymail assigned - - - - - 1 changed file: - data/CVE/list Changes: ===================================== data/CVE/list ===================================== --- a/data/CVE/list +++ b/data/CVE/list @@ -1,8 +1,7 @@ -CVE-2018-XXXX [Security issue with timing attack on WEBHOOK_AUTHORIZATION] +CVE-2018-6596 [Security issue with timing attack on WEBHOOK_AUTHORIZATION] - django-anymail 1.3-1 (bug #889450) NOTE: https://github.com/anymail/django-anymail/commit/db586ede1fbb41dce21310ea28ae15a1cf1286c5 (v1.3) NOTE: https://github.com/anymail/django-anymail/commit/c07998304b4a31df4c61deddcb03d3607a04691b (v1.2.x-branch) - TODO: check if DSA warranted, is in contrib section CVE-2018-6595 RESERVED CVE-2018-6594 (lib/Crypto/PublicKey/ElGamal.py in PyCrypto through 2.6.1 generates ...) View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/8e33624c62d959aa9d00c8a1add41dd6d5c43a2d --- View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/8e33624c62d959aa9d00c8a1add41dd6d5c43a2d You're receiving this email because of your account on salsa.debian.org.
_______________________________________________ Secure-testing-commits mailing list Secure-testing-commits@lists.alioth.debian.org http://lists.alioth.debian.org/cgi-bin/mailman/listinfo/secure-testing-commits