[Git][security-tracker-team/security-tracker][master] Update status for CVE-2016-6346
    Salvatore Bonaccorso (@carnil) 
    carnil at debian.org
       
    Sat Dec  4 16:37:36 GMT 2021
    
    
  
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits:
b60d5255 by Salvatore Bonaccorso at 2021-12-04T17:36:30+01:00
Update status for CVE-2016-6346
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -318272,9 +318272,11 @@ CVE-2016-6347 (Cross-site scripting (XSS) vulnerability in the default exception
 	- resteasy3.0 3.0.26-1
 	NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=1372124
 CVE-2016-6346 (RESTEasy enables GZIPInterceptor, which allows remote attackers to cau ...)
-	- resteasy <unfixed> (low; bug #837170)
+	- resteasy 3.1.0-1 (low; bug #837170)
 	[jessie] - resteasy <no-dsa> (Minor issue)
-	- resteasy3.0 <undetermined>
+	- resteasy3.0 3.0.26-1
+	NOTE: https://issues.jboss.org/browse/RESTEASY-1484 (not public)
+	NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=1372120
 CVE-2016-6345 (RESTEasy allows remote authenticated users to obtain sensitive informa ...)
 	- resteasy <unfixed> (low; bug #837170)
 	[jessie] - resteasy <no-dsa> (Minor issue)
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/b60d52558f44e8095bc3ab13821c94c46256699c
-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/b60d52558f44e8095bc3ab13821c94c46256699c
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20211204/48c1e9c3/attachment.htm>
    
    
More information about the debian-security-tracker-commits
mailing list