[Git][security-tracker-team/security-tracker][master] tomcat8.0 removed from the archive
Salvatore Bonaccorso
carnil at debian.org
Thu Oct 11 09:26:04 BST 2018
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits:
ec6e57e2 by Salvatore Bonaccorso at 2018-10-11T08:25:31Z
tomcat8.0 removed from the archive
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -15893,7 +15893,7 @@ CVE-2018-11785
CVE-2018-11784 (When the default servlet in Apache Tomcat versions 9.0.0.M1 to 9.0.11, ...)
- tomcat9 <itp> (bug #802312)
- tomcat8 8.5.34-1
- - tomcat8.0 <unfixed> (unimportant)
+ - tomcat8.0 <removed> (unimportant)
NOTE: tomcat8.0 builds only tomcat8.0-user and libtomcat8.0-java
- tomcat7 7.0.72-3
NOTE: Since 7.0.72-3, src:tomcat7 only builds the Servlet API
@@ -25678,7 +25678,7 @@ CVE-2018-8034 (The host name verification when using TLS with the WebSocket clie
{DSA-4281-1 DLA-1491-1 DLA-1453-1}
- tomcat9 <itp> (bug #802312)
- tomcat8 8.5.32-1
- - tomcat8.0 <unfixed> (unimportant)
+ - tomcat8.0 <removed> (unimportant)
NOTE: tomcat8.0 builds only tomcat8.0-user and libtomcat8.0-java
- tomcat7 7.0.72-3
NOTE: Since 7.0.72-3, src:tomcat7 only builds the Servlet API
@@ -25749,7 +25749,7 @@ CVE-2018-8014 (The defaults settings for the CORS filter provided in Apache Tomc
- tomcat8 8.5.32-1 (bug #898935)
[stretch] - tomcat8 <no-dsa> (Minor issue; user expected to configure filters appropriately)
[jessie] - tomcat8 <no-dsa> (Minor issue; user expected to configure filters appropriately)
- - tomcat8.0 <unfixed> (unimportant)
+ - tomcat8.0 <removed> (unimportant)
NOTE: tomcat8.0 builds only tomcat8.0-user and libtomcat8.0-java
- tomcat7 7.0.72-3
[wheezy] - tomcat7 <not-affected> (vulnerable code not present)
@@ -45480,7 +45480,7 @@ CVE-2018-1336 (An improper handing of overflow in the UTF-8 decoder with ...)
{DSA-4281-1 DLA-1491-1}
- tomcat9 <itp> (bug #802312)
- tomcat8 8.5.31-1
- - tomcat8.0 <unfixed> (unimportant)
+ - tomcat8.0 <removed> (unimportant)
NOTE: tomcat8.0 builds only tomcat8.0-user and libtomcat8.0-java
- tomcat7 7.0.72-3
[jessie] - tomcat7 7.0.56-3+really7.0.88-1
@@ -45583,7 +45583,7 @@ CVE-2018-1305 (Security constraints defined by annotations of Servlets in Apache
{DSA-4281-1 DLA-1450-1 DLA-1400-1 DLA-1301-1}
- tomcat9 <itp> (bug #802312)
- tomcat8 8.5.28-1
- - tomcat8.0 <unfixed> (unimportant)
+ - tomcat8.0 <removed> (unimportant)
NOTE: tomcat8.0 builds only tomcat8.0-user and libtomcat8.0-java
- tomcat7 7.0.72-3
NOTE: Since 7.0.72-3, src:tomcat7 only builds the Servlet API
@@ -45597,7 +45597,7 @@ CVE-2018-1304 (The URL pattern of "" (the empty string) which exactly
{DSA-4281-1 DLA-1450-1 DLA-1400-1 DLA-1301-1}
- tomcat9 <itp> (bug #802312)
- tomcat8 8.5.28-1
- - tomcat8.0 <unfixed> (unimportant)
+ - tomcat8.0 <removed> (unimportant)
NOTE: tomcat8.0 builds only tomcat8.0-user and libtomcat8.0-java
- tomcat7 7.0.72-3
NOTE: Since 7.0.72-3, src:tomcat7 only builds the Servlet API
@@ -53916,7 +53916,7 @@ CVE-2017-15706 (As part of the fix for bug 61201, the documentation for Apache T
- tomcat8 8.5.24-1
[stretch] - tomcat8 <not-affected> (Issue introduced later)
[jessie] - tomcat8 <not-affected> (Issue introduced later)
- - tomcat8.0 <unfixed> (unimportant)
+ - tomcat8.0 <removed> (unimportant)
NOTE: tomcat8.0 builds only tomcat8.0-user and libtomcat8.0-java
- tomcat7 <not-affected> (Only affects 7.0.79 to 7.0.82, Upstream bugzilla entry bz#61201 not addressed)
NOTE: https://svn.apache.org/r1814828 (7.0.x)
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/ec6e57e298da8b7e59421759a9fc678588671cd9
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/ec6e57e298da8b7e59421759a9fc678588671cd9
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20181011/5edbecf8/attachment.html>
More information about the debian-security-tracker-commits
mailing list