[Git][security-tracker-team/security-tracker][master] Update status for CVE-2016-6346

Salvatore Bonaccorso (@carnil) carnil at debian.org
Sat Dec 4 16:37:36 GMT 2021



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
b60d5255 by Salvatore Bonaccorso at 2021-12-04T17:36:30+01:00
Update status for CVE-2016-6346

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -318272,9 +318272,11 @@ CVE-2016-6347 (Cross-site scripting (XSS) vulnerability in the default exception
 	- resteasy3.0 3.0.26-1
 	NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=1372124
 CVE-2016-6346 (RESTEasy enables GZIPInterceptor, which allows remote attackers to cau ...)
-	- resteasy <unfixed> (low; bug #837170)
+	- resteasy 3.1.0-1 (low; bug #837170)
 	[jessie] - resteasy <no-dsa> (Minor issue)
-	- resteasy3.0 <undetermined>
+	- resteasy3.0 3.0.26-1
+	NOTE: https://issues.jboss.org/browse/RESTEASY-1484 (not public)
+	NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=1372120
 CVE-2016-6345 (RESTEasy allows remote authenticated users to obtain sensitive informa ...)
 	- resteasy <unfixed> (low; bug #837170)
 	[jessie] - resteasy <no-dsa> (Minor issue)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/b60d52558f44e8095bc3ab13821c94c46256699c

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/b60d52558f44e8095bc3ab13821c94c46256699c
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20211204/48c1e9c3/attachment.htm>


More information about the debian-security-tracker-commits mailing list