From 18dcb3f9363ac6aaf5668002a2ce79b529835005 Mon Sep 17 00:00:00 2001 From: Salvatore Bonaccorso Date: Mon, 6 Jul 2020 06:58:31 +0200 Subject: Mark CVE-2020-15007 asn unimportant The problematic code for M_LoadDefaults is not built. --- data/CVE/list | 5 ++--- 1 file changed, 2 insertions(+), 3 deletions(-) (limited to 'data') diff --git a/data/CVE/list b/data/CVE/list index 797d9e1e7d..4d08302673 100644 --- a/data/CVE/list +++ b/data/CVE/list @@ -1140,10 +1140,9 @@ CVE-2020-15009 CVE-2020-15008 RESERVED CVE-2020-15007 (A buffer overflow in the M_LoadDefaults function in m_misc.c in id Tec ...) - - rbdoom3bfg - NOTE: Possibly not built + - rbdoom3bfg (unimportant) NOTE: https://github.com/AXDOOMER/doom-vanille/commit/8a6d9a02fa991a91ff90ccdc73b5ceabaa6cb9ec - TODO: check, the included code in rbdoom3bfg seems actually to be ported + NOTE: Problematic code not built CVE-2020-15006 (Bludit 3.12.0 allows stored XSS via JavaScript code in an SVG document ...) NOT-FOR-US: Bludit CVE-2020-15005 (In MediaWiki before 1.31.8, 1.32.x and 1.33.x before 1.33.4, and 1.34. ...) -- cgit v1.2.3