From 65c1c5f35bbcb3af58a594381759952b7d94f614 Mon Sep 17 00:00:00 2001 From: Salvatore Bonaccorso Date: Sun, 29 Nov 2020 20:52:19 +0100 Subject: Add Debian bug reference for CVE-2020-2894{8,9}/php-pear --- data/CVE/list | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/data/CVE/list b/data/CVE/list index b55a17681d..25b3da4183 100644 --- a/data/CVE/list +++ b/data/CVE/list @@ -930,14 +930,14 @@ CVE-2020-28950 CVE-2020-28949 (Archive_Tar through 1.4.10 has :// filename sanitization only to addre ...) {DLA-2466-1 DLA-2465-1} - drupal7 - - php-pear + - php-pear (bug #976108) NOTE: https://github.com/pear/Archive_Tar/issues/33 NOTE: https://github.com/pear/Archive_Tar/commit/0670a05fdab997036a3fc3ef113b8f5922e574da NOTE: https://www.drupal.org/sa-core-2020-013 CVE-2020-28948 (Archive_Tar through 1.4.10 allows an unserialization attack because ph ...) {DLA-2466-1 DLA-2465-1} - drupal7 - - php-pear + - php-pear (bug #976108) NOTE: https://github.com/pear/Archive_Tar/issues/33 NOTE: https://github.com/pear/Archive_Tar/commit/0670a05fdab997036a3fc3ef113b8f5922e574da NOTE: https://www.drupal.org/sa-core-2020-013 -- cgit v1.2.3