From edb03e5580274e46fe25b379bf6f85182020358c Mon Sep 17 00:00:00 2001 From: Salvatore Bonaccorso Date: Thu, 9 Apr 2020 22:23:14 +0200 Subject: Track some gitlab issues from 2020-03-26 release --- data/CVE/list.2020 | 28 +++++++++++++++++++++------- 1 file changed, 21 insertions(+), 7 deletions(-) diff --git a/data/CVE/list.2020 b/data/CVE/list.2020 index 62ffb0f4d7..99252434d4 100644 --- a/data/CVE/list.2020 +++ b/data/CVE/list.2020 @@ -1436,19 +1436,33 @@ CVE-2020-10983 CVE-2020-10982 RESERVED CVE-2020-10981 (GitLab EE/CE 9.0 to 12.9 allows a maintainer to modify other maintaine ...) - TODO: check + [experimental] - gitlab 12.8.8-1 + - gitlab + NOTE: https://about.gitlab.com/releases/2020/03/26/security-release-12-dot-9-dot-1-released/ CVE-2020-10980 (GitLab EE/CE 8.0.rc1 to 12.9 is vulnerable to a blind SSRF in the FogB ...) - TODO: check + [experimental] - gitlab 12.8.8-1 + - gitlab + NOTE: https://about.gitlab.com/releases/2020/03/26/security-release-12-dot-9-dot-1-released/ CVE-2020-10979 (GitLab EE/CE 11.10 to 12.9 is leaking information on restricted CI pip ...) - TODO: check + [experimental] - gitlab 12.8.8-1 + - gitlab + NOTE: https://about.gitlab.com/releases/2020/03/26/security-release-12-dot-9-dot-1-released/ CVE-2020-10978 (GitLab EE/CE 8.11 to 12.9 is leaking information on Issues opened in a ...) - TODO: check + [experimental] - gitlab 12.8.8-1 + - gitlab + NOTE: https://about.gitlab.com/releases/2020/03/26/security-release-12-dot-9-dot-1-released/ CVE-2020-10977 (GitLab EE/CE 8.5 to 12.9 is vulnerable to a an path traversal when mov ...) - TODO: check + [experimental] - gitlab 12.8.8-1 + - gitlab + NOTE: https://about.gitlab.com/releases/2020/03/26/security-release-12-dot-9-dot-1-released/ CVE-2020-10976 (GitLab EE/CE 8.17 to 12.9 is vulnerable to information leakage when qu ...) - TODO: check + [experimental] - gitlab 12.8.8-1 + - gitlab + NOTE: https://about.gitlab.com/releases/2020/03/26/security-release-12-dot-9-dot-1-released/ CVE-2020-10975 (GitLab EE/CE 10.8 to 12.9 is leaking metadata and comments on vulnerab ...) - TODO: check + [experimental] - gitlab 12.8.8-1 + - gitlab + NOTE: https://about.gitlab.com/releases/2020/03/26/security-release-12-dot-9-dot-1-released/ CVE-2020-10974 RESERVED CVE-2020-10973 -- cgit v1.2.3