[Secure-testing-commits] r40026 - data/CVE

Moritz Muehlenhoff jmm at moszumanska.debian.org
Sun Feb 28 20:10:15 UTC 2016


Author: jmm
Date: 2016-02-28 20:10:14 +0000 (Sun, 28 Feb 2016)
New Revision: 40026

Modified:
   data/CVE/list
Log:
mark tomcat6 in jessie as not-affected


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2016-02-28 20:05:44 UTC (rev 40025)
+++ data/CVE/list	2016-02-28 20:10:14 UTC (rev 40026)
@@ -5695,7 +5695,8 @@
 	- tomcat9 <itp> (bug #802312)
 	- tomcat8 8.0.32-1
 	- tomcat7 7.0.68-1
-	- tomcat6 6.0.45+dfsg-1
+	- tomcat6 6.0.41-3
+	NOTE: Since 6.0.41-3, src:tomcat6 only builds a servlet and docs
 	NOTE: Fixed in 6.0.45, 7.0.68, 8.0.32, 9.0.0.M3
 CVE-2016-0762
 	RESERVED
@@ -5879,7 +5880,8 @@
 	- tomcat9 <itp> (bug #802312)
 	- tomcat8 8.0.32-1
 	- tomcat7 7.0.68-1
-	- tomcat6 6.0.45+dfsg-1
+	- tomcat6 6.0.41-3
+	NOTE: Since 6.0.41-3, src:tomcat6 only builds a servlet and docs
 	NOTE: Fixed in 6.0.45, 7.0.68, 8.0.32, 9.0.0.M3
 CVE-2016-0713
 	RESERVED
@@ -5900,7 +5902,8 @@
 	- tomcat9 <itp> (bug #802312)
 	- tomcat8 8.0.32-1
 	- tomcat7 7.0.68-1
-	- tomcat6 6.0.45+dfsg-1
+	- tomcat6 6.0.41-3
+	NOTE: Since 6.0.41-3, src:tomcat6 only builds a servlet and docs
 	NOTE: Fixed in 6.0.45, 7.0.68, 8.0.32, 9.0.0.M3
 CVE-2016-0705
 	RESERVED
@@ -16616,7 +16619,8 @@
 	- tomcat9 <itp> (bug #802312)
 	- tomcat8 8.0.32-1
 	- tomcat7 7.0.68-1
-	- tomcat6 6.0.45+dfsg-1
+	- tomcat6 6.0.41-3
+	NOTE: Since 6.0.41-3, src:tomcat6 only builds a servlet and docs
 	NOTE: Fixed in 7.0.68, 8.0.32, 9.0.0.M3
 	NOTE: Upstream advisory does not make reference to 6.x but looking at the
 	NOTE: upstream patches reveals that this issue is fixed since 6.0.45
@@ -16649,7 +16653,8 @@
 	- tomcat9 <itp> (bug #802312)
 	- tomcat8 8.0.30-1
 	- tomcat7 7.0.68-1
-	- tomcat6 6.0.45+dfsg-1
+	- tomcat6 6.0.41-3
+	NOTE: Since 6.0.41-3, src:tomcat6 only builds a servlet and docs
 	NOTE: Fixed in 6.0.45, 7.0.67, 8.0.30, 9.0.0.M3
 CVE-2015-5344 (The camel-xstream component in Apache Camel before 2.15.5 and 2.16.x ...)
 	NOT-FOR-US: Apache Camel
@@ -17354,7 +17359,8 @@
 	{DLA-435-1}
 	- tomcat8 8.0.28-1
 	- tomcat7 7.0.68-1
-	- tomcat6 6.0.45+dfsg-1
+	- tomcat6 6.0.41-3
+	NOTE: Since 6.0.41-3, src:tomcat6 only builds a servlet and docs
 	NOTE: Fixed in 6.0.45, 7.0.65, 8.0.27
 CVE-2015-5173
 	RESERVED




More information about the Secure-testing-commits mailing list