summaryrefslogtreecommitdiffstats
diff options
context:
space:
mode:
authorThorsten Alteholz <debian@alteholz.de>2021-11-25 23:34:21 +0100
committerThorsten Alteholz <debian@alteholz.de>2021-11-25 23:34:21 +0100
commit85d7152f0f305dcfe9050b248ed588fa651524f7 (patch)
tree3c0c3e25c5a2e743bc77e4ce0506284032f97e50
parent835883cf8c481420447ca5463f99728aa77e6543 (diff)
mark CVE-2021-44223 as no-dsa for Stretch
-rw-r--r--data/CVE/list.20211
1 files changed, 1 insertions, 0 deletions
diff --git a/data/CVE/list.2021 b/data/CVE/list.2021
index 1257dda9e3..d3de566b44 100644
--- a/data/CVE/list.2021
+++ b/data/CVE/list.2021
@@ -4,6 +4,7 @@ CVE-2021-44223 (WordPress before 5.8 lacks support for the Update URI plugin hea
- wordpress 5.8.1+dfsg1-1
[bullseye] - wordpress <no-dsa> (Minor issue; workarounds/mitigation for older versions can be implemented)
[buster] - wordpress <no-dsa> (Minor issue; workarounds/mitigation for older versions can be implemented)
+ [stretch] - wordpress <no-dsa> (Minor issue; workarounds/mitigation for older versions can be implemented)
NOTE: WordPress 5.8 introduces a new "Update URI" plugin header. Further mitigation
NOTE: options documented in:
NOTE: https://vavkamil.cz/2021/11/25/wordpress-plugin-confusion-update-can-get-you-pwned/

© 2014-2024 Faster IT GmbH | imprint | privacy policy