[Secure-testing-commits] r46253 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Wed Nov 16 20:59:11 UTC 2016


Author: carnil
Date: 2016-11-16 20:59:11 +0000 (Wed, 16 Nov 2016)
New Revision: 46253

Modified:
   data/CVE/list
Log:
Update status for CVE-2016-6802

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2016-11-16 20:57:51 UTC (rev 46252)
+++ data/CVE/list	2016-11-16 20:59:11 UTC (rev 46253)
@@ -7543,9 +7543,8 @@
 CVE-2016-6803
 	RESERVED
 CVE-2016-6802 (Apache Shiro before 1.3.2 allows attackers to bypass intended servlet ...)
-	- shiro <unfixed>
+	- shiro 1.3.2-1
 	[jessie] - shiro <no-dsa> (Minor issue)
-	TODO: check if affecting versions in Debian, issue fixed upstream with 1.3.2 release,
 CVE-2016-6801 (Cross-site request forgery (CSRF) vulnerability in the CSRF ...)
 	{DSA-3679-1 DLA-629-1}
 	- jackrabbit 2.12.4-1 (bug #838204)




More information about the Secure-testing-commits mailing list