From bd2fa74568e0ac39d0f360bd1a334ab074889a83 Mon Sep 17 00:00:00 2001 From: Salvatore Bonaccorso Date: Sat, 26 Mar 2022 11:08:50 +0100 Subject: Merge one php-illuminate-database which has no CVE assigned --- data/CVE/list | 2 +- data/next-oldstable-point-update.txt | 4 +--- 2 files changed, 2 insertions(+), 4 deletions(-) diff --git a/data/CVE/list b/data/CVE/list index afe64cb6eb..58bdc3533b 100644 --- a/data/CVE/list +++ b/data/CVE/list @@ -74936,7 +74936,7 @@ CVE-2021-25281 (An issue was discovered in through SaltStack Salt before 3002.5. CVE-2021-XXXX [SQL Server LIMIT / OFFSET SQL Injection] - php-laravel-framework 6.20.14+dfsg-2 (bug #987831) - php-illuminate-database (bug #987848) - [buster] - php-illuminate-database (Minor issue) + [buster] - php-illuminate-database 5.7.27-1+deb10u1 NOTE: https://github.com/laravel/framework/security/advisories/GHSA-4mg9-vhxq-vm7j NOTE: https://blog.laravel.com/security-sql-injection-in-sql-server-limit-offset CVE-2021-XXXX [Unexpected database bindings via requests (follow-up)] diff --git a/data/next-oldstable-point-update.txt b/data/next-oldstable-point-update.txt index ef8f26d693..a1f2773394 100644 --- a/data/next-oldstable-point-update.txt +++ b/data/next-oldstable-point-update.txt @@ -204,9 +204,7 @@ CVE-2021-44832 [buster] - apache-log4j2 2.17.1-1~deb10u1 CVE-2021-40874 [buster] - lemonldap-ng 2.0.2+ds-7+deb10u7 -CVE-2021-XXXX [SQL Server LIMIT / OFFSET SQL Injection] - [buster] - php-illuminate-database 5.7.27-1+deb10u1 -CVE-2021-21263 (Laravel is a web application framework. Versions of Laravel before 6.2 ...) +CVE-2021-21263 [buster] - php-illuminate-database 5.7.27-1+deb10u1 CVE-2022-0534 [buster] - htmldoc 1.9.3-1+deb10u3 -- cgit v1.2.3