[Git][security-tracker-team/security-tracker][master] Process three NFUs in Apache NiFi

Salvatore Bonaccorso carnil at debian.org
Tue Nov 19 20:14:28 GMT 2019



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
224214ce by Salvatore Bonaccorso at 2019-11-19T20:13:53Z
Process three NFUs in Apache NiFi

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -22793,6 +22793,7 @@ CVE-2019-12422 (Apache Shiro before 1.4.2, when using the default "remember me"
 	TODO: check details on fix
 CVE-2019-12421
 	RESERVED
+	NOT-FOR-US: Apache NiFi
 CVE-2019-12420
 	RESERVED
 CVE-2019-12419 (Apache CXF before 3.3.4 and 3.2.11 provides all of the components that ...)
@@ -29318,6 +29319,7 @@ CVE-2019-10084 (In Apache Impala 2.7.0 to 3.2.0, an authenticated user with acce
 	NOT-FOR-US: Apache Impala
 CVE-2019-10083
 	RESERVED
+	NOT-FOR-US: Apache NiFi
 CVE-2019-10082 (In Apache HTTP Server 2.4.18-2.4.39, using fuzzed network input, the h ...)
 	{DSA-4509-1}
 	- apache2 2.4.41-1
@@ -29332,6 +29334,7 @@ CVE-2019-10081 (HTTP/2 (2.4.20 through 2.4.39) very early pushes, for example co
 	NOTE: https://httpd.apache.org/security/vulnerabilities_24.html#CVE-2019-10081
 CVE-2019-10080
 	RESERVED
+	NOT-FOR-US: Apache NiFi
 CVE-2019-10079 (Apache Traffic Server is vulnerable to HTTP/2 setting flood attacks. E ...)
 	{DSA-4520-1}
 	- trafficserver 8.0.5+ds-1



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/224214ce203065ccfdf97ca65b97d37885223ce5

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/224214ce203065ccfdf97ca65b97d37885223ce5
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20191119/37f7f5ad/attachment.html>


More information about the debian-security-tracker-commits mailing list