[Git][security-tracker-team/security-tracker][master] two jspwiki issues

Moritz Muehlenhoff jmm at debian.org
Fri Sep 20 14:41:23 BST 2019



Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker


Commits:
91b843e1 by Moritz Muehlenhoff at 2019-09-20T13:40:48Z
two jspwiki issues
remove three <postponed> entries for PHp 7.0

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -16468,7 +16468,6 @@ CVE-2019-11036 (When processing certain files, PHP EXIF extension in versions 7.
 	{DSA-4527-1 DLA-1803-1}
 	- php7.3 7.3.6-1 (bug #928421)
 	- php7.0 <removed>
-	[stretch] - php7.0 <postponed> (Fix along in future update)
 	- php5 <removed>
 	NOTE: Fixed in 7.1.29, 7.2.18, 7.3.5
 	NOTE: PHP Bug: https://bugs.php.net/bug.php?id=77950
@@ -16476,7 +16475,6 @@ CVE-2019-11035 (When processing certain files, PHP EXIF extension in versions 7.
 	{DLA-1803-1}
 	- php7.3 7.3.4-1
 	- php7.0 <removed>
-	[stretch] - php7.0 <postponed> (Fix along in future update)
 	- php5 <removed>
 	NOTE: Fixed in 7.1.28, 7.2.17, 7.3.4
 	NOTE: PHP Bug: https://bugs.php.net/bug.php?id=77831
@@ -16484,7 +16482,6 @@ CVE-2019-11034 (When processing certain files, PHP EXIF extension in versions 7.
 	{DLA-1803-1}
 	- php7.3 7.3.4-1
 	- php7.0 <removed>
-	[stretch] - php7.0 <postponed> (Fix along in future update)
 	- php5 <removed>
 	NOTE: Fixed in 7.1.28, 7.2.17, 7.3.4
 	NOTE: PHP Bug: https://bugs.php.net/bug.php?id=77753
@@ -19030,6 +19027,7 @@ CVE-2019-10090
 	RESERVED
 CVE-2019-10089
 	RESERVED
+	- jspwiki <removed>
 CVE-2019-10088 (A carefully crafted or corrupt zip file can cause an OOM in Apache Tik ...)
 	- tika 1.22-1 (bug #933744)
 	[jessie] - tika <not-affected> (Vulnerable feature introduced in 1.7)
@@ -19037,6 +19035,7 @@ CVE-2019-10088 (A carefully crafted or corrupt zip file can cause an OOM in Apac
 	NOTE: https://github.com/apache/tika/commit/426be73b9e7500fa3d441231fa4e473de34743f6
 CVE-2019-10087
 	RESERVED
+	- jspwiki <removed>
 CVE-2019-10086 (In Apache Commons Beanutils 1.9.2, a special BeanIntrospector class wa ...)
 	{DLA-1896-1}
 	- commons-beanutils 1.9.4-1



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/91b843e1bb3adb0b539e1e9b5dfde3a4a61f586f

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/91b843e1bb3adb0b539e1e9b5dfde3a4a61f586f
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20190920/bcd56abc/attachment.html>


More information about the debian-security-tracker-commits mailing list