summaryrefslogtreecommitdiffstats
path: root/data
diff options
context:
space:
mode:
authorSalvatore Bonaccorso <carnil@debian.org>2018-06-17 11:38:04 +0200
committerSalvatore Bonaccorso <carnil@debian.org>2018-06-17 11:38:04 +0200
commit05792c14b84051431d2cff5db3573ab64ec7d395 (patch)
tree8db3f6494dd9d4192dc0644dc084c90b6b63d408 /data
parent6da26f7cf07df052d46b97d6e9719bfc0ac5b914 (diff)
Add CVE-2017-16012/{jquery,node-jquery}
Diffstat (limited to 'data')
-rw-r--r--data/CVE/list7
1 files changed, 6 insertions, 1 deletions
diff --git a/data/CVE/list b/data/CVE/list
index 72e5fd8746..8fb52e3d4b 100644
--- a/data/CVE/list
+++ b/data/CVE/list
@@ -37467,7 +37467,12 @@ CVE-2017-16014 (Http-proxy is a proxying library. Because of the way errors are
CVE-2017-16013 (hapi is a web and services application framework. When hapi &gt;= 15.0.0 ...)
TODO: check
CVE-2017-16012 (Jquery is a javascript library for DOM traversal and manipulation, ...)
- TODO: check
+ - jquery 3.1.1-1
+ - node-jquery <unfixed>
+ NOTE: https://github.com/jquery/jquery/issues/2432
+ NOTE: https://github.com/jquery/jquery/commit/b078a62013782c7424a4a61a240c23c4c0b42614
+ NOTE: https://nodesecurity.io/advisories/328
+ TODO: check, why are there two jquery source packages once src:jquery and once src:node-jquery?
CVE-2017-16011 (jQuery is a javascript library for DOM manipulation. jQuery's main ...)
TODO: check
CVE-2017-16010 (i18next is a language translation framework. When using the .init ...)

© 2014-2024 Faster IT GmbH | imprint | privacy policy