Skip to content
Commits on Source (2)
......@@ -17087,6 +17087,7 @@ CVE-2019-1010084 (Dancer::Plugin::SimpleCRUD 1.14 and earlier is affected by: In
CVE-2019-1010083 (The Pallets Project Flask before 1.0 is affected by: unexpected memory ...)
- flask 1.0.2-1
[stretch] - flask <no-dsa> (Minor issue)
[jessie] - flask <no-dsa> (Minor issue)
NOTE: https://www.palletsprojects.com/blog/flask-1-0-released/
NOTE: https://github.com/pallets/flask/pull/2691/commits/ab4142215d836b0298fc47fa1e4b75408b9c37a0
NOTE: After communication with MITRE, this CVE *might* overlap CVE-2018-1000656.
......@@ -59,6 +59,8 @@ libav
--
libcrypto++
--
libextractor (Thorsten Alteholz)
--
libmatio (Adrian Bunk)
NOTE: fairly high number of open issues. Not sure why we never had a look at them.
NOTE: triage work needed, help security team for fixes if needed.
......