From 54c657109b48f18c6be013b8e72386e3ef2c535e Mon Sep 17 00:00:00 2001 From: Chris Lamb Date: Wed, 29 Jan 2020 12:11:51 +0100 Subject: Update notes for CVE-2020-7105 in src:hiredis. --- data/CVE/2020.list | 3 ++- 1 file changed, 2 insertions(+), 1 deletion(-) diff --git a/data/CVE/2020.list b/data/CVE/2020.list index 090802bdb4..b4adfeaf90 100644 --- a/data/CVE/2020.list +++ b/data/CVE/2020.list @@ -2673,7 +2673,8 @@ CVE-2020-7106 (Cacti 1.2.8 has stored XSS in data_sources.php, color_templates_i NOTE: https://github.com/Cacti/cacti/commit/b1c70e19466a6e69284e24cde437b55ccc454bee CVE-2020-7105 (async.c and dict.c in libhiredis.a in hiredis through 0.14.0 allow a N ...) - hiredis (bug #949995) - NOTE: https://github.com/redis/hiredis/issues/754 + NOTE: https://github.com/redis/hiredis/pull/754 + NOTE: https://github.com/redis/hiredis/pull/756 CVE-2020-7104 (The chained-quiz plugin 1.1.8.1 for WordPress has reflected XSS via th ...) NOT-FOR-US: chained-quiz plugin for WordPress CVE-2020-7103 -- cgit v1.2.3