summaryrefslogtreecommitdiffstats
diff options
context:
space:
mode:
authorSalvatore Bonaccorso <carnil@debian.org>2020-01-30 22:21:22 +0100
committerSalvatore Bonaccorso <carnil@debian.org>2020-01-30 22:21:22 +0100
commit575a64e9730d9cdaf2bf7ead1b28185207c80b5d (patch)
tree9ef1909bd7abf1ba1e7f6692b67ee3a96d0787f5
parent1b36136429fd2be464554072f07524c40ddc121b (diff)
Add CVE-2019-18634/sudo
-rw-r--r--data/CVE/2019.list4
1 files changed, 3 insertions, 1 deletions
diff --git a/data/CVE/2019.list b/data/CVE/2019.list
index 126d274b63..0d850b0f3f 100644
--- a/data/CVE/2019.list
+++ b/data/CVE/2019.list
@@ -4671,7 +4671,9 @@ CVE-2019-18636 (A cross-site scripting (XSS) vulnerability in Jitbit .NET Forum
CVE-2019-18635 (An issue was discovered in Mooltipass Moolticute through v0.42.1 and v ...)
NOT-FOR-US: Mooltipass Moolticute
CVE-2019-18634 (In Sudo through 1.8.29, if pwfeedback is enabled in /etc/sudoers, user ...)
- TODO: check
+ - sudo <unfixed>
+ NOTE: https://www.openwall.com/lists/oss-security/2020/01/30/6
+ NOTE: https://github.com/sudo-project/sudo/commit/fa8ffeb17523494f0e8bb49a25e53635f4509078
CVE-2019-18633 (European Commission eIDAS-Node Integration Package before 2.3.1 has Mi ...)
NOT-FOR-US: European Commission eIDAS-Node Integration Package
CVE-2019-18632 (European Commission eIDAS-Node Integration Package before 2.3.1 allows ...)

© 2014-2024 Faster IT GmbH | imprint | privacy policy