[Git][security-tracker-team/security-tracker][master] 2 commits: mark libspring-security-2.0-java as not-affected in jessie

Abhijith PA gitlab at salsa.debian.org
Wed Aug 29 15:46:37 BST 2018


Abhijith PA pushed to branch master at Debian Security Tracker / security-tracker


Commits:
4313b918 by Abhijith PA at 2018-08-29T14:43:00Z
mark libspring-security-2.0-java as not-affected in jessie

- - - - -
2950edbc by Abhijith PA at 2018-08-29T14:45:44Z
Remove libspring-security-2.0-java from dla-needed.txt

- - - - -


2 changed files:

- data/CVE/list
- data/dla-needed.txt


Changes:

=====================================
data/CVE/list
=====================================
@@ -40153,6 +40153,7 @@ CVE-2018-1259 (Spring Data Commons, versions 1.13 prior to 1.13.12 and 2.0 prior
 	NOT-FOR-US: Spring Data Commons
 CVE-2018-1258 (Spring Framework version 5.0.5 when used in combination with any ...)
 	- libspring-security-2.0-java <removed>
+	[jessie] - libspring-security-2.0-java <not-affected> (Affected version not in jessie)
 	NOTE: https://pivotal.io/security/cve-2018-1258
 CVE-2018-1257 (Spring Framework, versions 5.0.x prior to 5.0.6, versions 4.3.x prior ...)
 	- libspring-java <unfixed>


=====================================
data/dla-needed.txt
=====================================
@@ -64,10 +64,6 @@ libav (Hugo Lefeuvre)
 --
 libspring-java (Abhijith PA)
 --
-libspring-security-2.0-java
-  NOTE: 20180727: Same as libspring-java? (lamby)
-  NOTE: 20180829: Can safely mark as not-affected. The affected version is libspring-java-5 which is not in jessie (abhijith)
---
 libx11 (Markus Koschany)
 --
 libxml2 (Thorsten Alteholz)
@@ -110,7 +106,7 @@ spice-gtk
   NOTE: 20180819: Patch is possibly incomplete. See http://www.openwall.com/lists/oss-security/2018/08/17/2 (Brian May)
 --
 squirrelmail (Abhijith PA)
- NOTE: 20180818: Build is ready to upload
+  NOTE: 20180818: Build is ready to upload
 --
 suricata (Thorsten Alteholz)
 --



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/compare/6ec268e210f17200334032197c817975567aa633...2950edbced6fa68ae6b2b8a892c7c807f7b625df

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/compare/6ec268e210f17200334032197c817975567aa633...2950edbced6fa68ae6b2b8a892c7c807f7b625df
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20180829/7b267f33/attachment.html>


More information about the debian-security-tracker-commits mailing list