Skip to content
Commit 8ce6124e authored by Salvatore Bonaccorso's avatar Salvatore Bonaccorso
Browse files

Mark CVE -2018-19205 as ignored for stretch

The respective feature would rely on a properly working php-crypt-gpg
installation. Those might be custom on the system (as php-crypt-gpg is
not in stretch). But plugins/enigma/lib/enigma_driver_gnupg.php from
1.2.x has bigger issues anyway, since it's decrypt() function doesn't
verify signatures on encrypted message.
parent 52053a33
Loading
Loading
Loading
Loading
0% Loading or .
You are about to add 0 people to the discussion. Proceed with caution.
Please register or to comment