From 4d6c31a2da122a26276d3a9f2cc8cb7b2441ee8e Mon Sep 17 00:00:00 2001 From: Salvatore Bonaccorso Date: Tue, 7 Apr 2020 22:04:57 +0200 Subject: Track tag for the plymouth part of CVE-2018-20839 --- data/CVE/list.2018 | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/data/CVE/list.2018 b/data/CVE/list.2018 index 4f9c6d5ac8..eb34663bc7 100644 --- a/data/CVE/list.2018 +++ b/data/CVE/list.2018 @@ -498,7 +498,7 @@ CVE-2018-20839 (systemd 242 changes the VT1 mode upon a logout, which allows att NOTE: might revisit. Furthermore the issue might be fixed in the xorg xserver. NOTE: Tentative merge request: https://gitlab.freedesktop.org/xorg/xserver/merge_requests/241 NOTE: Further analysis on the problem: https://gitlab.freedesktop.org/xorg/xserver/issues/857#note_201402 - NOTE: plymouth fix: https://gitlab.freedesktop.org/plymouth/plymouth/commit/28ee4012c94b4045b97e5a2a66f66b7688b2dff3 + NOTE: plymouth fix: https://gitlab.freedesktop.org/plymouth/plymouth/commit/28ee4012c94b4045b97e5a2a66f66b7688b2dff3 (0.9.4) NOTE: The plymouth fix does not seem to be enough though, cf. NOTE: https://gitlab.freedesktop.org/xorg/xserver/issues/857#note_220255 CVE-2018-20838 (ampforwp_save_steps_data in the AMP for WP plugin before 0.9.97.21 for ...) -- cgit v1.2.3