Skip to content
GitLab
Explore
Sign in
Register
Commits on Source (2)
Add Debian bug reference for npm issues
· c8d6faed
Salvatore Bonaccorso
authored
Dec 21, 2019
c8d6faed
Mark npm issues as no-dsa for buster
· 92b97282
Salvatore Bonaccorso
authored
Dec 21, 2019
92b97282
Show whitespace changes
Inline
Side-by-side
data/CVE/list
View file @
92b97282
...
...
@@ -15660,17 +15660,20 @@ CVE-2019-16779 (In RubyGem excon before 0.71.0, there was a race condition aroun
CVE-2019-16778 (In TensorFlow before 1.15, a heap buffer overflow in UnsortedSegmentSu ...)
- tensorflow <itp> (bug #804612)
CVE-2019-16777 (Versions of the npm CLI prior to 6.13.4 are vulnerable to an Arbitrary ...)
- npm <unfixed>
- npm <unfixed> (bug #947127)
[buster] - npm <no-dsa> (Minor issue)
[jessie] - npm <ignored> (Nodejs in Jessie not covered by security support)
NOTE: https://github.com/npm/cli/security/advisories/GHSA-4328-8hgf-7wjr
NOTE: https://blog.npmjs.org/post/189618601100/binary-planting-with-the-npm-cli
CVE-2019-16776 (Versions of the npm CLI prior to 6.13.3 are vulnerable to an Arbitrary ...)
- npm <unfixed>
- npm <unfixed> (bug #947127)
[buster] - npm <no-dsa> (Minor issue)
[jessie] - npm <ignored> (Nodejs in Jessie not covered by security support)
NOTE: https://github.com/npm/cli/security/advisories/GHSA-x8qc-rrcw-4r46
NOTE: https://blog.npmjs.org/post/189618601100/binary-planting-with-the-npm-cli
CVE-2019-16775 (Versions of the npm CLI prior to 6.13.3 are vulnerable to an Arbitrary ...)
- npm <unfixed>
- npm <unfixed> (bug #947127)
[buster] - npm <no-dsa> (Minor issue)
[jessie] - npm <ignored> (Nodejs in Jessie not covered by security support)
NOTE: https://github.com/npm/cli/security/advisories/GHSA-m6cx-g6qm-p2cx
NOTE: https://blog.npmjs.org/post/189618601100/binary-planting-with-the-npm-cli