[Secure-testing-commits] r34421 - data/CVE
Santiago Ruano Rincón
santiago at moszumanska.debian.org
Fri May 22 09:53:50 UTC 2015
Author: santiago
Date: 2015-05-22 09:53:50 +0000 (Fri, 22 May 2015)
New Revision: 34421
Modified:
data/CVE/list
Log:
tomcat: update fixes link concerning CVE-2014-7810
Modified: data/CVE/list
===================================================================
--- data/CVE/list 2015-05-22 09:32:32 UTC (rev 34420)
+++ data/CVE/list 2015-05-22 09:53:50 UTC (rev 34421)
@@ -16770,8 +16770,10 @@
NOTE: Marked as fixed in 6.0.41-3 which only builds the libservlet2.5-java and libservlet2.5-java-doc packages
- tomcat7 7.0.61-1
- tomcat8 8.0.21-2
- NOTE: http://svn.apache.org/viewvc?view=revision&revision=1644019
- NOTE: http://svn.apache.org/viewvc?view=revision&revision=1645644
+ NOTE: http://svn.apache.org/viewvc?view=revision&revision=1645366 (6.x)
+ NOTE: http://svn.apache.org/viewvc?view=revision&revision=1659538 (6.x)
+ NOTE: http://svn.apache.org/viewvc?view=revision&revision=1644019 (7.x)
+ NOTE: http://svn.apache.org/viewvc?view=revision&revision=1645644 (7.x)
TODO: check
CVE-2014-7809 (Apache Struts 2.0.0 through 2.3.x before 2.3.20 uses predictable ...)
- libstruts1.2-java <not-affected> (Struts 2.0.0 through to Struts 2.3.16.3)
More information about the Secure-testing-commits
mailing list