From 9c0f82332b4c97309a06c9bf4afa020c013af381 Mon Sep 17 00:00:00 2001 From: Salvatore Bonaccorso Date: Sat, 4 Jul 2020 21:47:02 +0200 Subject: Add Debian bug reference for CVE-2020-7663/ruby-websocket-extensions --- data/CVE/list | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) (limited to 'data/CVE') diff --git a/data/CVE/list b/data/CVE/list index ec14085560..2687c6059f 100644 --- a/data/CVE/list +++ b/data/CVE/list @@ -20694,7 +20694,7 @@ CVE-2020-7665 CVE-2020-7664 (The ExtractTo function doesn't securely escape file paths in zip archi ...) TODO: check CVE-2020-7663 (websocket-extensions ruby module prior to 0.1.5 allows Denial of Servi ...) - - ruby-websocket-extensions + - ruby-websocket-extensions (bug #964274) NOTE: https://github.com/faye/websocket-extensions-ruby/security/advisories/GHSA-g6wq-qcwm-j5g2 NOTE: https://github.com/faye/websocket-extensions-ruby/commit/aa156a439da681361ed6f53f1a8131892418838b CVE-2020-7662 (websocket-extensions npm module prior to 1.0.4 allows Denial of Servic ...) -- cgit v1.2.3