[Git][security-tracker-team/security-tracker][master] Add CVE-2020-27218/jetty9

Salvatore Bonaccorso carnil at debian.org
Tue Dec 1 06:45:44 GMT 2020



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
1dd993c2 by Salvatore Bonaccorso at 2020-12-01T07:43:43+01:00
Add CVE-2020-27218/jetty9

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -8086,7 +8086,9 @@ CVE-2020-27220
 CVE-2020-27219
 	RESERVED
 CVE-2020-27218 (In Eclipse Jetty version 9.4.0.RC0 to 9.4.34.v20201102, 10.0.0.alpha0  ...)
-	TODO: check
+	- jetty9 <unfixed>
+	NOTE: https://bugs.eclipse.org/bugs/show_bug.cgi?id=568892
+	NOTE: https://github.com/eclipse/jetty.project/security/advisories/GHSA-86wm-rrjm-8wh8
 CVE-2020-27217 (In Eclipse Hono version 1.3.0 and 1.4.0 the AMQP protocol adapter does ...)
 	NOT-FOR-US: Eclipse Hono
 CVE-2020-27216 (In Eclipse Jetty versions 1.0 thru 9.4.32.v20200930, 10.0.0.alpha1 thr ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/1dd993c20ded872915ae476e4c84f16d3b5dc114

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/1dd993c20ded872915ae476e4c84f16d3b5dc114
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20201201/0fd017e0/attachment.html>


More information about the debian-security-tracker-commits mailing list