Skip to content
GitLab
Explore
Sign in
Register
Commits on Source (2)
mark CVE-2019-17400 as no-dsa for Jessie
· a3fcee20
Thorsten Alteholz
authored
Oct 22, 2019
a3fcee20
claim file
· dba62c00
Thorsten Alteholz
authored
Oct 22, 2019
dba62c00
Show whitespace changes
Inline
Side-by-side
data/CVE/list
View file @
dba62c00
...
...
@@ -2973,6 +2973,7 @@ CVE-2019-17401 (** DISPUTED ** libyal liblnk 20191006 has a heap-based buffer ov
NOTE: https://github.com/libyal/liblnk/issues/40
CVE-2019-17400 (The unoconv package before 0.9 mishandles untrusted pathnames, leading ...)
- unoconv <unfixed>
[jessie] - unoconv <no-dsa> (Minor issue)
CVE-2019-17399 (The Shack Forms Pro extension before 4.0.32 for Joomla! allows path tr ...)
NOT-FOR-US: Shack Forms Pro extension for Joomla!
CVE-2019-17398 (In the Dark Horse Comics application 1.3.21 for Android, token informa ...)
data/dla-needed.txt
View file @
dba62c00
...
...
@@ -17,6 +17,8 @@ ampache (Roberto C. Sánchez)
ansible (Utkarsh Gupta)
NOTE: 20191011: Code appears to be in lib/ansible/callbacks.py in jessie's version. (lamby)
--
file (Thorsten Alteholz)
--
freeimage (Hugo Lefeuvre)
NOTE: Maintainer will take care of the update.
NOTE: https://lists.debian.org/debian-lts/2019/05/msg00079.html
...
...