summaryrefslogtreecommitdiffstats
diff options
context:
space:
mode:
authorAdrian Bunk <bunk@debian.org>2024-02-29 23:47:08 +0000
committerAdrian Bunk <bunk@debian.org>2024-02-29 23:47:08 +0000
commit3b7538d4a5f7c810200cfa9138192dc9731ee0b2 (patch)
treed6f36e46f33edbbd299c00378c38cb9c85060d9c
parentcc6af1107bed628b4ba7ca6c9d9078ac0dfe86f6 (diff)
Reserve DLA-3745-1 for gsoap
-rw-r--r--data/CVE/list5
-rw-r--r--data/DLA/list3
-rw-r--r--data/dla-needed.txt3
3 files changed, 3 insertions, 8 deletions
diff --git a/data/CVE/list b/data/CVE/list
index 1e95f441bc..09a284a769 100644
--- a/data/CVE/list
+++ b/data/CVE/list
@@ -275300,27 +275300,22 @@ CVE-2020-13579 (An exploitable integer overflow vulnerability exists in the Plan
NOT-FOR-US: SoftMaker
CVE-2020-13578 (A denial-of-service vulnerability exists in the WS-Security plugin fun ...)
- gsoap 2.8.104-3 (bug #983596)
- [buster] - gsoap <no-dsa> (Minor issue)
[stretch] - gsoap <ignored> (intrusive to backport, will either not compile or may cause runtime errors)
NOTE: https://talosintelligence.com/vulnerability_reports/TALOS-2020-1189
CVE-2020-13577 (A denial-of-service vulnerability exists in the WS-Security plugin fun ...)
- gsoap 2.8.104-3 (bug #983596)
- [buster] - gsoap <no-dsa> (Minor issue)
[stretch] - gsoap <ignored> (intrusive to backport, will either not compile or may cause runtime errors)
NOTE: https://talosintelligence.com/vulnerability_reports/TALOS-2020-1188
CVE-2020-13576 (A code execution vulnerability exists in the WS-Addressing plugin func ...)
- gsoap 2.8.104-3 (bug #983596)
- [buster] - gsoap <no-dsa> (Minor issue)
[stretch] - gsoap <ignored> (intrusive to backport, will either not compile or may cause runtime errors)
NOTE: https://talosintelligence.com/vulnerability_reports/TALOS-2020-1187
CVE-2020-13575 (A denial-of-service vulnerability exists in the WS-Addressing plugin f ...)
- gsoap 2.8.104-3 (bug #983596)
- [buster] - gsoap <no-dsa> (Minor issue)
[stretch] - gsoap <ignored> (intrusive to backport, will either not compile or may cause runtime errors)
NOTE: https://talosintelligence.com/vulnerability_reports/TALOS-2020-1186
CVE-2020-13574 (A denial-of-service vulnerability exists in the WS-Security plugin fun ...)
- gsoap 2.8.104-3 (bug #983596)
- [buster] - gsoap <no-dsa> (Minor issue)
[stretch] - gsoap <ignored> (intrusive to backport, will either not compile or may cause runtime errors)
NOTE: https://talosintelligence.com/vulnerability_reports/TALOS-2020-1185
CVE-2020-13573 (A denial-of-service vulnerability exists in the Ethernet/IP server fun ...)
diff --git a/data/DLA/list b/data/DLA/list
index 8561bf9551..7afea22c67 100644
--- a/data/DLA/list
+++ b/data/DLA/list
@@ -1,3 +1,6 @@
+[29 Feb 2024] DLA-3745-1 gsoap - security update
+ {CVE-2020-13574 CVE-2020-13575 CVE-2020-13576 CVE-2020-13577 CVE-2020-13578}
+ [buster] - gsoap 2.8.75-1+deb10u1
[29 Feb 2024] DLA-3744-1 python-django - security update
{CVE-2021-28658 CVE-2021-31542 CVE-2021-33203 CVE-2021-33571}
[buster] - python-django 1:1.11.29-1+deb10u11
diff --git a/data/dla-needed.txt b/data/dla-needed.txt
index b11dd7645d..e2623c043b 100644
--- a/data/dla-needed.txt
+++ b/data/dla-needed.txt
@@ -107,9 +107,6 @@ frr
golang-go.crypto
NOTE: 20231219: Added by Front-Desk (ta)
--
-gsoap (Adrian Bunk)
- NOTE: 20240229: Forward-port of stretch ELA. (bunk)
---
gtkwave
NOTE: 20240116: Added by Front-Desk (lamby)
NOTE: 20240116: For CVE-2023-32650 etc. (lamby)

© 2014-2024 Faster IT GmbH | imprint | privacy policy