From 73a8383008ab9615bb1c28ea661d48fe0e999b48 Mon Sep 17 00:00:00 2001 From: Salvatore Bonaccorso Date: Mon, 1 Jun 2020 10:23:06 +0200 Subject: Mark CVE-2020-11078 as no-dsa --- data/CVE/list.2020 | 2 ++ 1 file changed, 2 insertions(+) diff --git a/data/CVE/list.2020 b/data/CVE/list.2020 index 3d9b6dcf76..b900c2a577 100644 --- a/data/CVE/list.2020 +++ b/data/CVE/list.2020 @@ -5932,6 +5932,8 @@ CVE-2020-11079 (node-dns-sync (npm module dns-sync) through 0.2.0 allows executi TODO: check CVE-2020-11078 (In httplib2 before version 0.18.0, an attacker controlling unescaped p ...) - python-httplib2 0.18.1-1 + [buster] - python-httplib2 (Minor issue) + [stretch] - python-httplib2 (Minor issue) NOTE: https://github.com/httplib2/httplib2/security/advisories/GHSA-gg84-qgv9-w4pq NOTE: https://github.com/httplib2/httplib2/commit/a1457cc31f3206cf691d11d2bf34e98865873e9e CVE-2020-11077 (In Puma (RubyGem) before 4.3.5 and 3.12.6, a client could smuggle a re ...) -- cgit v1.2.3