From c0bfd3922b0a3a52affd657ae5e12acb948bba43 Mon Sep 17 00:00:00 2001 From: Salvatore Bonaccorso Date: Mon, 6 Apr 2020 09:10:29 +0200 Subject: Add CVE-2020-10699/targetcli-fb systemd units (and in particular the socker based activation) was added in later version as currently present up to unstable. --- data/CVE/list | 3 +++ 1 file changed, 3 insertions(+) diff --git a/data/CVE/list b/data/CVE/list index 15b7aa4c1f..bc74b3d304 100644 --- a/data/CVE/list +++ b/data/CVE/list @@ -2062,6 +2062,9 @@ CVE-2020-10700 RESERVED CVE-2020-10699 RESERVED + - targetcli-fb (Vulnerable code introduced later) + NOTE: Introduced in: https://github.com/open-iscsi/targetcli-fb/commit/ad37f94ae72d0e3d5963ce182e2897c84af9c039 (v2.1.50) + NOTE: Fixed by: https://github.com/open-iscsi/targetcli-fb/commit/6e4f39357a90a914d11bac21cc2d2b52c07c213d CVE-2020-10698 RESERVED NOT-FOR-US: Ansible Tower -- cgit v1.2.3