Skip to content
Commits on Source (2)
......@@ -5,7 +5,7 @@ CVE-2019-6708 (PHPSHE 1.7 has SQL injection via the admin.php?mod=order state ..
CVE-2019-6707 (PHPSHE 1.7 has SQL injection via the admin.php?mod=product&act=state ...)
NOT-FOR-US: PHPSHE
CVE-2019-6706 (Lua 5.3.5 has a use-after-free in lua_upvaluejoin in lapi.c. For ...)
- lua5.3 <unfixed>
- lua5.3 <unfixed> (bug #920321)
- lua5.2 <unfixed>
- lua5.1 <unfixed>
- lua50 <undetermined>
......@@ -490,8 +490,17 @@ CVE-2019-6488 (The string component in the GNU C Library (aka glibc or libc6) th
NOTE: x32 not officially supported
CVE-2019-6487 (TP-Link WDR Series devices through firmware v3 (such as TL-WDR5620 ...)
NOT-FOR-US: TP-Link
CVE-2019-6486
CVE-2019-6486 [crypto/elliptic implementations of P-521 and P-384 elliptic curves allow for denial of service]
RESERVED
- golang-1.12 <undetermined>
- golang-1.11 <unfixed>
- golang-1.10 <unfixed>
- golang-1.8 <removed>
- golang-1.7 <removed>
- golang <removed>
NOTE: https://groups.google.com/forum/m/#!topic/golang-announce/mVeX35iXuSw
NOTE: https://golang.org/issue/29903
NOTE: https://github.com/golang/go/commit/42b42f71
CVE-2019-6485
RESERVED
CVE-2019-6484