Skip to content
GitLab
Explore
Sign in
Register
Commits on Source (2)
CVE-2017-11430: reference the upstream issue
· 74f27354
Salvatore Bonaccorso
authored
Mar 03, 2018
74f27354
Add bug reference for node-ssri issue
· bee5644a
Salvatore Bonaccorso
authored
Mar 03, 2018
Since there is no CVE assigned use a Debian BTS bug as identifier.
bee5644a
Show whitespace changes
Inline
Side-by-side
data/CVE/list
View file @
bee5644a
CVE-2018-XXXX [Regular Expression Denial of Service vulnerability in the strict mode functionality]
- node-ssri <unfixed> (unimportant)
- node-ssri <unfixed> (unimportant
; bug #891980
)
NOTE: fixed in 5.2.2
NOTE: https://github.com/zkat/ssri/commit/d0ebcdc22cb5c8f47f89716d08b3518b2485d65d
NOTE: https://github.com/zkat/ssri/issues/10
...
...
@@ -37673,6 +37673,7 @@ CVE-2017-11430
RESERVED
- ruby-omniauth-saml <unfixed>
NOTE: fixed in 1.10.0
NOTE: https://github.com/omniauth/omniauth-saml/issues/156
NOTE: https://github.com/omniauth/omniauth-saml/pull/157
NOTE: https://duo.com/blog/duo-finds-saml-vulnerabilities-affecting-multiple-implementations
NOTE: https://www.kb.cert.org/vuls/id/475445