[Git][security-tracker-team/security-tracker][master] new undertow issue

Moritz Muehlenhoff jmm at debian.org
Fri May 25 07:16:29 BST 2018


Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker


Commits:
be0df6e6 by Moritz Muehlenhoff at 2018-05-25T08:15:58+02:00
new undertow issue

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
--- a/data/CVE/list
+++ b/data/CVE/list
@@ -28435,7 +28435,7 @@ CVE-2018-1068 (A flaw was found in the Linux 4.x kernel's implementation of 32-b
 	NOTE: Unprivileged user namespaces are disabled in Debian, this only affects
 	NOTE: non-standard setups
 CVE-2018-1067 (In Undertow before versions 7.1.2.CR1, 7.1.2.GA it was found that the ...)
-	TODO: check, unclear if issue is in src:untertow or in its use in WildFly (issue is incomplete fix for CVE-2016-4993, which might need an update depending on the result)
+	- undertow <unfixed>
 CVE-2018-1066 (The Linux kernel before version 4.11 is vulnerable to a NULL pointer ...)
 	{DSA-4188-1 DSA-4187-1}
 	- linux 4.11.6-1



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/be0df6e66c465b92e405b070e7c5a0d78c68107c

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/be0df6e66c465b92e405b070e7c5a0d78c68107c
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20180525/8676c426/attachment.html>


More information about the debian-security-tracker-commits mailing list