[Secure-testing-commits] r45797 - data/CVE
Salvatore Bonaccorso
carnil at moszumanska.debian.org
Mon Oct 31 13:49:18 UTC 2016
Author: carnil
Date: 2016-10-31 13:49:17 +0000 (Mon, 31 Oct 2016)
New Revision: 45797
Modified:
data/CVE/list
Log:
Record fixed version for CVE-2016-5018
Modified: data/CVE/list
===================================================================
--- data/CVE/list 2016-10-31 13:47:58 UTC (rev 45796)
+++ data/CVE/list 2016-10-31 13:49:17 UTC (rev 45797)
@@ -13176,8 +13176,8 @@
NOT-FOR-US: Apache MyFaces Trinidad
CVE-2016-5018 [Apache Tomcat Security Manager Bypass]
RESERVED
- - tomcat8 <unfixed> (low)
- - tomcat7 <unfixed> (low; bug #842663)
+ - tomcat8 8.0.37-1 (low)
+ - tomcat7 7.0.72-1 (low; bug #842663)
- tomcat6 6.0.41-3 (low)
NOTE: Since 6.0.41-3, src:tomcat6 only builds a servlet and docs
NOTE: http://markmail.org/message/lixw6iyojoxwfizv?q=list:org.apache.tomcat.announce/
More information about the Secure-testing-commits
mailing list