Skip to content
GitLab
Explore
Sign in
Register
Commits on Source (4)
Triage CVE-2018-13259 & CVE-2018-0502 (zsh) for jessie LTS
· 9b895ef9
Chris Lamb
authored
Sep 06, 2018
9b895ef9
Triage CVE-2018-13818 (twig) for jessie LTS
· 6269be1c
Chris Lamb
authored
Sep 06, 2018
6269be1c
data/dla-needed.txt: Triage curl for jessie.
· 9f7a1d8d
Chris Lamb
authored
Sep 06, 2018
9f7a1d8d
data/dla-needed.txt: Claim curl.
· 78f76f9c
Chris Lamb
authored
Sep 06, 2018
78f76f9c
Show whitespace changes
Inline
Side-by-side
data/CVE/list
View file @
78f76f9c
...
...
@@ -6642,6 +6642,7 @@ CVE-2018-13819 (A hardcoded secret key, in CA Unified Infrastructure Management
CVE-2018-13818 (Twig before 2.4.4 allows Server-Side Template Injection (SSTI) via the ...)
- twig 2.4.4-2
[stretch] - twig <no-dsa> (Minor issue)
[jessie] - twig <no-dsa> (Minor issue)
NOTE: Fixed upstream in 2.4.4
CVE-2018-13817
RESERVED
...
...
@@ -7850,6 +7851,7 @@ CVE-2018-13260
CVE-2018-13259 (An issue was discovered in zsh before 5.6. Shebang lines exceeding 64 ...)
- zsh 5.6-1 (bug #908000)
[stretch] - zsh <no-dsa> (Minor issue)
[jessie] - zsh <no-dsa> (Minor issue)
NOTE: https://www.zsh.org/mla/zsh-announce/136
NOTE: https://sourceforge.net/p/zsh/code/ci/1c4c7b6a4d17294df028322b70c53803a402233d
CVE-2018-13258
...
...
@@ -44335,6 +44337,7 @@ CVE-2018-0503
CVE-2018-0502 (An issue was discovered in zsh before 5.6. The beginning of a #! script ...)
- zsh 5.6-1 (bug #908000)
[stretch] - zsh <no-dsa> (Minor issue)
[jessie] - zsh <no-dsa> (Minor issue)
NOTE: https://www.zsh.org/mla/zsh-announce/136
NOTE: https://sourceforge.net/p/zsh/code/ci/1c4c7b6a4d17294df028322b70c53803a402233d
CVE-2018-0501 (The mirror:// method implementation in Advanced Package Tool (APT) ...)
data/dla-needed.txt
View file @
78f76f9c
...
...
@@ -14,6 +14,8 @@ https://wiki.debian.org/LTS/Development#Triage_new_security_issues
NOTE: 20180901: No detailed information or a reproducer available at the
NOTE: moment. Check. (apo)
--
curl (Chris Lamb)
--
discount (Markus Koschany)
--
enigmail
...
...