[Secure-testing-commits] r48892 - data/CVE
Salvatore Bonaccorso
carnil at moszumanska.debian.org
Tue Feb 14 03:32:04 UTC 2017
Author: carnil
Date: 2017-02-14 03:32:04 +0000 (Tue, 14 Feb 2017)
New Revision: 48892
Modified:
data/CVE/list
Log:
Add two workaround entries for recent tomcat DSA
Modified: data/CVE/list
===================================================================
--- data/CVE/list 2017-02-14 03:19:49 UTC (rev 48891)
+++ data/CVE/list 2017-02-14 03:32:04 UTC (rev 48892)
@@ -1,8 +1,10 @@
CVE-2017-XXXX [tomcat DoS via infinite loop in HTTPS request processing]
- tomcat8 <unfixed> (bug #851304)
[jessie] - tomcat8 8.0.14-1+deb8u7
+ NOTE: Workaround entry for DSA-3788-1 until CVE assigned
- tomcat7 7.0.72-3
[jessie] - tomcat7 7.0.56-3+deb8u8
+ NOTE: Workaround entry for DSA-3787-1 until CVE assigned
NOTE: Since 7.0.72-3, src:tomcat7 only builds the Servlet API
NOTE: https://bz.apache.org/bugzilla/show_bug.cgi?id=57544
CVE-2017-5981
More information about the Secure-testing-commits
mailing list