From 859106362281d56fedb24453e1fdf48ce82efb91 Mon Sep 17 00:00:00 2001 From: =?UTF-8?q?Moritz=20M=C3=BChlenhoff?= Date: Fri, 25 Feb 2022 12:14:10 +0100 Subject: php-illuminate-database, lemonldap ospus --- data/CVE/list | 2 ++ data/next-oldstable-point-update.txt | 7 +++++++ 2 files changed, 9 insertions(+) (limited to 'data') diff --git a/data/CVE/list b/data/CVE/list index 47b344850b..c72ef521fe 100644 --- a/data/CVE/list +++ b/data/CVE/list @@ -69552,6 +69552,7 @@ CVE-2021-25281 (An issue was discovered in through SaltStack Salt before 3002.5. CVE-2021-XXXX [SQL Server LIMIT / OFFSET SQL Injection] - php-laravel-framework 6.20.14+dfsg-2 (bug #987831) - php-illuminate-database (bug #987848) + [buster] - php-illuminate-database (Minor issue) NOTE: https://github.com/laravel/framework/security/advisories/GHSA-4mg9-vhxq-vm7j NOTE: https://blog.laravel.com/security-sql-injection-in-sql-server-limit-offset CVE-2021-XXXX [Unexpected database bindings via requests (follow-up)] @@ -69561,6 +69562,7 @@ CVE-2021-XXXX [Unexpected database bindings via requests (follow-up)] CVE-2021-21263 (Laravel is a web application framework. Versions of Laravel before 6.2 ...) - php-laravel-framework 6.20.11+dfsg-1 (bug #980095) - php-illuminate-database (bug #980899) + [buster] - php-illuminate-database (Minor issue) NOTE: https://blog.laravel.com/security-laravel-62011-7302-8221-released NOTE: https://github.com/laravel/framework/security/advisories/GHSA-3p32-j457-pg5x NOTE: https://github.com/laravel/framework/pull/35865 diff --git a/data/next-oldstable-point-update.txt b/data/next-oldstable-point-update.txt index 544f62dcf4..bd337fe05a 100644 --- a/data/next-oldstable-point-update.txt +++ b/data/next-oldstable-point-update.txt @@ -238,3 +238,10 @@ CVE-2022-23307 [buster] - apache-log4j1.2 1.2.17-8+deb10u2 CVE-2021-44832 [buster] - apache-log4j2 2.17.1-1~deb10u1 +CVE-2021-40874 + [buster] - lemonldap-ng 2.0.2+ds-7+deb10u7 +CVE-2021-XXXX [SQL Server LIMIT / OFFSET SQL Injection] + [buster] - php-illuminate-database 5.7.27-1+deb10u1 +CVE-2021-21263 (Laravel is a web application framework. Versions of Laravel before 6.2 ...) + - php-laravel-framework 6.20.11+dfsg-1 (bug #980095) + [buster] - php-illuminate-database 5.7.27-1+deb10u1 -- cgit v1.2.3