summaryrefslogtreecommitdiffstats
diff options
context:
space:
mode:
authorChris Lamb <lamby@debian.org>2021-11-15 08:17:52 -0800
committerChris Lamb <lamby@debian.org>2021-11-15 08:17:52 -0800
commit9919467b1e986c4d8b4dcaff319d7ec54f866a36 (patch)
treef9c6361feb5c9bcf17ad13920b361777fe51a808
parent605581ac874aecb326f4c142f3f35578968d1ee3 (diff)
Triage CVE-2021-43331 & CVE-2021-43332 in mailman for stretch LTS.
-rw-r--r--data/CVE/2021.list2
1 files changed, 2 insertions, 0 deletions
diff --git a/data/CVE/2021.list b/data/CVE/2021.list
index eef253e225..709e225fc8 100644
--- a/data/CVE/2021.list
+++ b/data/CVE/2021.list
@@ -951,11 +951,13 @@ CVE-2021-43333
CVE-2021-43332 (In GNU Mailman before 2.1.36, the CSRF token for the Cgi/admindb.py ad ...)
- mailman <removed>
[buster] - mailman <no-dsa> (Minor issue)
+ [stretch] - mailman <no-dsa> (Minor issue)
NOTE: https://mail.python.org/archives/list/mailman-announce@python.org/message/I2X7PSFXIEPLM3UMKZMGOEO3UFYETGRL/
NOTE: https://bugs.launchpad.net/mailman/+bug/1949403
CVE-2021-43331 (In GNU Mailman before 2.1.36, a crafted URL to the Cgi/options.py user ...)
- mailman <removed>
[buster] - mailman <no-dsa> (Minor issue)
+ [stretch] - mailman <no-dsa> (Minor issue)
NOTE: https://mail.python.org/archives/list/mailman-announce@python.org/message/I2X7PSFXIEPLM3UMKZMGOEO3UFYETGRL/
NOTE: https://bugs.launchpad.net/mailman/+bug/1949401
CVE-2021-43330

© 2014-2024 Faster IT GmbH | imprint | privacy policy