diff options
author | Moritz Mühlenhoff <jmm@debian.org> | 2021-02-26 22:38:37 +0100 |
---|---|---|
committer | Moritz Mühlenhoff <jmm@debian.org> | 2021-02-26 22:56:29 +0100 |
commit | 36f148e78720ed9703374ac2f54e5ca618640459 (patch) | |
tree | 246b84f9b1753cce8c6cb16aad383c94439de1d8 /data/CVE/2020.list | |
parent | a299a8b34a7e7885dc262102f44276be54a63c21 (diff) |
bullseye triage
remove undetermined entries for intellij-community-idea, the issues are for
the fullblown IDE, which is ITPd, while this just provides some general classes
Diffstat (limited to 'data/CVE/2020.list')
-rw-r--r-- | data/CVE/2020.list | 19 |
1 files changed, 8 insertions, 11 deletions
diff --git a/data/CVE/2020.list b/data/CVE/2020.list index 1acc69c9e4..056699d974 100644 --- a/data/CVE/2020.list +++ b/data/CVE/2020.list @@ -38605,19 +38605,19 @@ CVE-2020-13580 (An exploitable heap-based buffer overflow vulnerability exists i CVE-2020-13579 (An exploitable integer overflow vulnerability exists in the PlanMaker ...) NOT-FOR-US: SoftMaker CVE-2020-13578 (A denial-of-service vulnerability exists in the WS-Security plugin fun ...) - - gsoap <unfixed> + - gsoap <unfixed> (bug #983596) NOTE: https://talosintelligence.com/vulnerability_reports/TALOS-2020-1189 CVE-2020-13577 (A denial-of-service vulnerability exists in the WS-Security plugin fun ...) - - gsoap <unfixed> + - gsoap <unfixed> (bug #983596) NOTE: https://talosintelligence.com/vulnerability_reports/TALOS-2020-1188 CVE-2020-13576 (A code execution vulnerability exists in the WS-Addressing plugin func ...) - - gsoap <unfixed> + - gsoap <unfixed> (bug #983596) NOTE: https://talosintelligence.com/vulnerability_reports/TALOS-2020-1187 CVE-2020-13575 (A denial-of-service vulnerability exists in the WS-Addressing plugin f ...) - - gsoap <unfixed> + - gsoap <unfixed> (bug #983596) NOTE: https://talosintelligence.com/vulnerability_reports/TALOS-2020-1186 CVE-2020-13574 (A denial-of-service vulnerability exists in the WS-Security plugin fun ...) - - gsoap <unfixed> + - gsoap <unfixed> (bug #983596) NOTE: https://talosintelligence.com/vulnerability_reports/TALOS-2020-1185 CVE-2020-13573 (A denial-of-service vulnerability exists in the Ethernet/IP server fun ...) NOT-FOR-US: Rockwell Automation RSLinx Classic @@ -43363,7 +43363,6 @@ CVE-2020-11691 (In JetBrains Hub before 2020.1.12099, content spoofing in the Hu NOT-FOR-US: JetBrains Hub CVE-2020-11690 (In JetBrains IntelliJ IDEA before 2020.1, the license server could be ...) - intellij-idea <itp> (bug #747616) - - intellij-community-idea <undetermined> CVE-2020-11689 (In JetBrains TeamCity before 2019.2.1, a user without appropriate perm ...) NOT-FOR-US: JetBrains TeamCity CVE-2020-11688 (In JetBrains TeamCity before 2019.2.1, the application state is kept a ...) @@ -52660,7 +52659,6 @@ CVE-2020-7915 (An issue was discovered on Eaton 5P 850 devices. The Ubicacion SA NOT-FOR-US: Eaton devices CVE-2020-7914 (In JetBrains IntelliJ IDEA 2019.2, an XSLT debugger plugin misconfigur ...) - intellij-idea <itp> (bug #747616) - - intellij-community-idea <undetermined> CVE-2020-7913 (JetBrains YouTrack 2019.2 before 2019.2.59309 was vulnerable to XSS vi ...) NOT-FOR-US: JetBrains CVE-2020-7912 (In JetBrains YouTrack before 2019.2.59309, SMTP/Jabber settings could ...) @@ -52679,10 +52677,8 @@ CVE-2020-7906 (In JetBrains Rider versions 2019.3 EAP2 through 2019.3 EAP7, ther NOT-FOR-US: JetBrains CVE-2020-7905 (Ports listened to by JetBrains IntelliJ IDEA before 2019.3 were expose ...) - intellij-idea <itp> (bug #747616) - - intellij-community-idea <undetermined> CVE-2020-7904 (In JetBrains IntelliJ IDEA before 2019.3, some Maven repositories were ...) - intellij-idea <itp> (bug #747616) - - intellij-community-idea <undetermined> CVE-2020-7903 RESERVED CVE-2020-7902 @@ -59148,13 +59144,14 @@ CVE-2020-5238 (The table extension in GitHub Flavored Markdown before version 0. [buster] - python-cmarkgfm <no-dsa> (Minor issue) - ruby-commonmarker 0.21.0-1 (bug #965981) [buster] - ruby-commonmarker <no-dsa> (Minor issue) - - haskell-cmark-gfm <unfixed> (bug #965982) + - haskell-cmark-gfm 0.2.1+ds1-1 (bug #965982) [buster] - haskell-cmark-gfm <no-dsa> (Minor issue) - r-cran-commonmark <unfixed> (bug #965980) [buster] - r-cran-commonmark <no-dsa> (Minor issue) + [bullseye] - r-cran-commonmark <no-dsa> (Minor issue) NOTE: https://github.com/github/cmark-gfm/security/advisories/GHSA-7gc6-9qr5-hc85 NOTE: https://github.com/github/cmark-gfm/commit/85d895289c5ab67f988ca659493a64abb5fec7b4 - NOTE: haskell-cmark-gfm switched to src:cmark-gfm in 0.2.1+ds1-1 + NOTE: haskell-cmark-gfm switched to src:cmark-gfm in 0.2.1+ds1-1, marking that as fixed (despite cmark-gfm not fixed yet) CVE-2020-5237 (Multiple relative path traversal vulnerabilities in the oneup/uploader ...) NOT-FOR-US: oneup/uploader-bundle CVE-2020-5236 (Waitress version 1.4.2 allows a DOS attack When waitress receives a he ...) |