summaryrefslogtreecommitdiffstats
path: root/data
diff options
context:
space:
mode:
authorMarkus Koschany <apo@debian.org>2021-12-06 17:34:28 +0100
committerMarkus Koschany <apo@debian.org>2021-12-06 17:34:28 +0100
commitbae70816696c447f0731b2782144cc5257ff6fe7 (patch)
tree403264a3edbfb70475f008b1c222e74df7bbd251 /data
parentc395648e3b8bd566016f5f9ecc177d2e982769c4 (diff)
Mark CVE-2020-18670,CVE-2020-18671 in roundcube as ignore instead of postponed
Those issues are borderline unimportant and can be safely ignored.
Diffstat (limited to 'data')
-rw-r--r--data/CVE/2020.list4
1 files changed, 2 insertions, 2 deletions
diff --git a/data/CVE/2020.list b/data/CVE/2020.list
index 156c3082c9..28298d7413 100644
--- a/data/CVE/2020.list
+++ b/data/CVE/2020.list
@@ -28467,13 +28467,13 @@ CVE-2020-18672
CVE-2020-18671 (Cross Site Scripting (XSS) vulnerability in Roundcube Mail &lt;=1.4.4 ...)
- roundcube 1.4.5+dfsg.1-1
[buster] - roundcube 1.3.13+dfsg.1-1~deb10u1
- [stretch] - roundcube <postponed> (Minor issue, XSS in installer which is not exposed in Debian)
+ [stretch] - roundcube <ignored> (Minor issue, XSS in installer which is not exposed in Debian)
NOTE: https://github.com/roundcube/roundcubemail/issues/7406
NOTE: https://roundcube.net/news/2020/06/02/security-updates-1.4.5-and-1.3.12
CVE-2020-18670 (Cross Site Scripting (XSS) vulneraibility in Roundcube mail .4.4 via d ...)
- roundcube 1.4.5+dfsg.1-1
[buster] - roundcube 1.3.13+dfsg.1-1~deb10u1
- [stretch] - roundcube <postponed> (Minor issue, XSS in installer which is not exposed in Debian)
+ [stretch] - roundcube <ignored> (Minor issue, XSS in installer which is not exposed in Debian)
NOTE: https://github.com/roundcube/roundcubemail/issues/7406
NOTE: https://roundcube.net/news/2020/06/02/security-updates-1.4.5-and-1.3.12
CVE-2020-18669

© 2014-2024 Faster IT GmbH | imprint | privacy policy