summaryrefslogtreecommitdiffstats
path: root/data/CVE/2015.list
diff options
context:
space:
mode:
authorMoritz Mühlenhoff <jmm@debian.org>2020-10-29 19:52:21 +0100
committerMoritz Mühlenhoff <jmm@debian.org>2020-10-29 19:52:21 +0100
commit71d72b112285653e9c1c50b6f2aff22112fd5f87 (patch)
treeca08e88916bcac46ae80287f324ff8f95530b03d /data/CVE/2015.list
parent93494ce55292e541baa53c3505875617068388a9 (diff)
various bugs
Diffstat (limited to 'data/CVE/2015.list')
-rw-r--r--data/CVE/2015.list2
1 files changed, 1 insertions, 1 deletions
diff --git a/data/CVE/2015.list b/data/CVE/2015.list
index 024193c2e1..420e18cc7a 100644
--- a/data/CVE/2015.list
+++ b/data/CVE/2015.list
@@ -559,7 +559,7 @@ CVE-2015-9286 (Controllers.outgoing in controllers/index.js in NodeBB before 0.7
CVE-2015-9285 (esoTalk 1.0.0g4 has XSS via the PATH_INFO to the conversations/ URI. ...)
NOT-FOR-US: esoTalk
CVE-2015-9284 (The request phase of the OmniAuth Ruby gem (1.9.1 and earlier) is vuln ...)
- - ruby-omniauth <unfixed>
+ - ruby-omniauth <unfixed> (bug #973384)
[buster] - ruby-omniauth <no-dsa> (Minor issue)
[stretch] - ruby-omniauth <no-dsa> (Minor issue)
[jessie] - ruby-omniauth <no-dsa> (Fix is in additional gem and needs CSRF protection in apps)

© 2014-2024 Faster IT GmbH | imprint | privacy policy