summaryrefslogtreecommitdiffstats
diff options
context:
space:
mode:
authorSalvatore Bonaccorso <carnil@debian.org>2020-01-28 08:48:58 +0100
committerSalvatore Bonaccorso <carnil@debian.org>2020-01-28 08:48:58 +0100
commit4964f7c97cef5c44e7acbe4276b30d61d07f00bb (patch)
tree65f7d5d09c6857ada797ba463a5a03bb0b07a878
parentd9c755f1e559c516f17b747a1c133248ef761b41 (diff)
Add Debian bug references for ruby-secure-headers issues
-rw-r--r--data/CVE/2020.list4
1 files changed, 2 insertions, 2 deletions
diff --git a/data/CVE/2020.list b/data/CVE/2020.list
index 8ff7008b50..ccc29c0220 100644
--- a/data/CVE/2020.list
+++ b/data/CVE/2020.list
@@ -5877,13 +5877,13 @@ CVE-2020-5219 (Angular Expressions before version 1.0.1 has a remote code execut
CVE-2020-5218
RESERVED
CVE-2020-5217 (In Secure Headers (RubyGem secure_headers), a directive injection vuln ...)
- - ruby-secure-headers <unfixed>
+ - ruby-secure-headers <unfixed> (bug #949999)
NOTE: https://github.com/twitter/secure_headers/security/advisories/GHSA-xq52-rv6w-397c
NOTE: https://github.com/twitter/secure_headers/commit/936a160e3e9659737a9f9eafce13eea36b5c9fa3
NOTE: https://github.com/twitter/secure_headers/issues/418
NOTE: https://github.com/twitter/secure_headers/pull/421
CVE-2020-5216 (In Secure Headers (RubyGem secure_headers), a directive injection vuln ...)
- - ruby-secure-headers <unfixed>
+ - ruby-secure-headers <unfixed> (bug #949998)
NOTE: https://github.com/twitter/secure_headers/security/advisories/GHSA-w978-rmpf-qmwg
NOTE: https://github.com/twitter/secure_headers/commit/301695706f6a70517c2a90c6ef9b32178440a2d0
CVE-2020-5215

© 2014-2024 Faster IT GmbH | imprint | privacy policy