[Secure-testing-commits] r55016 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Thu Aug 24 06:16:59 UTC 2017


Author: carnil
Date: 2017-08-24 06:16:59 +0000 (Thu, 24 Aug 2017)
New Revision: 55016

Modified:
   data/CVE/list
Log:
Add note for resteasy issue

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-08-23 21:21:51 UTC (rev 55015)
+++ data/CVE/list	2017-08-24 06:16:59 UTC (rev 55016)
@@ -17057,10 +17057,11 @@
 	NOTE: https://github.com/libming/libming/issues/68
 CVE-2017-7562
 	RESERVED
-CVE-2017-7561
+CVE-2017-7561 [Vary header not added by CORS filter leading to cache poisoning]
 	RESERVED
 	- resteasy <unfixed>
 	NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=1483823
+	NOTE: https://issues.jboss.org/projects/RESTEASY/issues/RESTEASY-1539
 	TODO: check, possibly and according to Red Hat only >= 3.0.7
 CVE-2017-7560
 	RESERVED




More information about the Secure-testing-commits mailing list