summaryrefslogtreecommitdiffstats
diff options
context:
space:
mode:
authorSalvatore Bonaccorso <carnil@debian.org>2024-04-16 21:31:27 +0200
committerSalvatore Bonaccorso <carnil@debian.org>2024-04-16 21:31:27 +0200
commitf7ce864d8aaa519d2127b7522ae5b8bdd214d329 (patch)
treeaa599a7381346cd3e410f2edb3d582903abcfb38
parent1f338f96a11a1f51ca958cf4352f5e64909c074f (diff)
Add Debian bug reference for CVE-2024-1135/gunicorn
-rw-r--r--data/CVE/list2
1 files changed, 1 insertions, 1 deletions
diff --git a/data/CVE/list b/data/CVE/list
index de17a23eb0..d9ee01db78 100644
--- a/data/CVE/list
+++ b/data/CVE/list
@@ -160,7 +160,7 @@ CVE-2024-1456 (An S3 bucket takeover vulnerability was identified in the h2oai/h
CVE-2024-1183 (An SSRF (Server-Side Request Forgery) vulnerability exists in the grad ...)
NOT-FOR-US: Gradio
CVE-2024-1135 (Gunicorn fails to properly validate Transfer-Encoding headers, leading ...)
- - gunicorn <unfixed>
+ - gunicorn <unfixed> (bug #1069126)
NOTE: https://huntr.com/bounties/22158e34-cfd5-41ad-97e0-a780773d96c1
NOTE: https://github.com/benoitc/gunicorn/commit/ac29c9b0a758d21f1e0fb3b3457239e523fa9f1d
CVE-2024-0549 (mintplex-labs/anything-llm is vulnerable to a relative path traversal ...)

© 2014-2024 Faster IT GmbH | imprint | privacy policy