[Secure-testing-commits] r54645 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Fri Aug 11 20:24:58 UTC 2017


Author: carnil
Date: 2017-08-11 20:24:58 +0000 (Fri, 11 Aug 2017)
New Revision: 54645

Modified:
   data/CVE/list
Log:
Add reference for CVE-2017-9787

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-08-11 20:23:26 UTC (rev 54644)
+++ data/CVE/list	2017-08-11 20:24:58 UTC (rev 54645)
@@ -6314,6 +6314,7 @@
 CVE-2017-9787 (When using a Spring AOP functionality to secure Struts actions it is ...)
 	- libstruts1.2-java <not-affected> (Vulnerable code not present)
 	NOTE: Issue is specific to Struts 2.x.
+	NOTE: https://struts.apache.org/docs/s2-049.html
 CVE-2017-9786
 	RESERVED
 CVE-2017-9785 (Csrf.cs in NancyFX Nancy before 1.4.4 and 2.x before 2.0-dangermouse ...)




More information about the Secure-testing-commits mailing list