[Secure-testing-commits] r56139 - data/CVE

Markus Koschany apo at moszumanska.debian.org
Mon Sep 25 23:18:46 UTC 2017


Author: apo
Date: 2017-09-25 23:18:45 +0000 (Mon, 25 Sep 2017)
New Revision: 56139

Modified:
   data/CVE/list
Log:
glassfish,CVE-2012-3155: end-of-life for Wheezy

Glassfish was never fully packaged for Debian and security issues can only be
resolved by updating to the latest upstream version since upstream doesn't
provide enough information. Only few people are still using this package. It is
better to mark it end-of-life now.


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-09-25 21:10:15 UTC (rev 56138)
+++ data/CVE/list	2017-09-25 23:18:45 UTC (rev 56139)
@@ -152450,6 +152450,7 @@
 	- mysql-5.5 5.5.28+dfsg-1 (bug #690778)
 CVE-2012-3155 (Unspecified vulnerability in the CORBA ORB component in Sun GlassFish ...)
 	- glassfish <undetermined> (bug #692035)
+	[wheezy] - glassfish <end-of-life>
 	NOTE: Oracle doesn't provide any useful public information to fix the package without importing a new upstream version.
 CVE-2012-3154 (Unspecified vulnerability in the Oracle Agile PLM Framework component ...)
 	NOT-FOR-US: Oracle Supply Chain Products Suite




More information about the Secure-testing-commits mailing list