summaryrefslogtreecommitdiffstats
diff options
context:
space:
mode:
authorChris Lamb <lamby@debian.org>2021-11-15 08:17:52 -0800
committerChris Lamb <lamby@debian.org>2021-11-15 08:17:52 -0800
commitb62bed3dd2c1e36e9d26cd774f24d0052df5d155 (patch)
treef2197d1dc7a25796c0749e96ca920795dbacebbe
parent0ded51621abe99d3a295666b2c51dcdd2dbe5bd4 (diff)
Triage CVE-2021-43331 & CVE-2021-43332 in mailman for stretch LTS.
-rw-r--r--data/CVE/list.20212
1 files changed, 2 insertions, 0 deletions
diff --git a/data/CVE/list.2021 b/data/CVE/list.2021
index eef253e225..709e225fc8 100644
--- a/data/CVE/list.2021
+++ b/data/CVE/list.2021
@@ -951,11 +951,13 @@ CVE-2021-43333
CVE-2021-43332 (In GNU Mailman before 2.1.36, the CSRF token for the Cgi/admindb.py ad ...)
- mailman <removed>
[buster] - mailman <no-dsa> (Minor issue)
+ [stretch] - mailman <no-dsa> (Minor issue)
NOTE: https://mail.python.org/archives/list/mailman-announce@python.org/message/I2X7PSFXIEPLM3UMKZMGOEO3UFYETGRL/
NOTE: https://bugs.launchpad.net/mailman/+bug/1949403
CVE-2021-43331 (In GNU Mailman before 2.1.36, a crafted URL to the Cgi/options.py user ...)
- mailman <removed>
[buster] - mailman <no-dsa> (Minor issue)
+ [stretch] - mailman <no-dsa> (Minor issue)
NOTE: https://mail.python.org/archives/list/mailman-announce@python.org/message/I2X7PSFXIEPLM3UMKZMGOEO3UFYETGRL/
NOTE: https://bugs.launchpad.net/mailman/+bug/1949401
CVE-2021-43330

© 2014-2024 Faster IT GmbH | imprint | privacy policy