From 330694c32ad0ee9733a5611c08f2e559abfba213 Mon Sep 17 00:00:00 2001 From: Salvatore Bonaccorso Date: Tue, 7 Apr 2020 22:04:57 +0200 Subject: Track tag for the plymouth part of CVE-2018-20839 --- data/CVE/list | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/data/CVE/list b/data/CVE/list index a114bde984..7162910a38 100644 --- a/data/CVE/list +++ b/data/CVE/list @@ -50100,7 +50100,7 @@ CVE-2018-20839 (systemd 242 changes the VT1 mode upon a logout, which allows att NOTE: might revisit. Furthermore the issue might be fixed in the xorg xserver. NOTE: Tentative merge request: https://gitlab.freedesktop.org/xorg/xserver/merge_requests/241 NOTE: Further analysis on the problem: https://gitlab.freedesktop.org/xorg/xserver/issues/857#note_201402 - NOTE: plymouth fix: https://gitlab.freedesktop.org/plymouth/plymouth/commit/28ee4012c94b4045b97e5a2a66f66b7688b2dff3 + NOTE: plymouth fix: https://gitlab.freedesktop.org/plymouth/plymouth/commit/28ee4012c94b4045b97e5a2a66f66b7688b2dff3 (0.9.4) NOTE: The plymouth fix does not seem to be enough though, cf. NOTE: https://gitlab.freedesktop.org/xorg/xserver/issues/857#note_220255 CVE-2019-12149 (SQL injection vulnerability in silverstripe/restfulserver module 1.0.x ...) -- cgit v1.2.3