[Git][security-tracker-team/security-tracker][master] Add CVE-2020-11987/batik

Salvatore Bonaccorso carnil at debian.org
Wed Feb 24 20:40:47 GMT 2021



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
10d9fc13 by Salvatore Bonaccorso at 2021-02-24T21:40:26+01:00
Add CVE-2020-11987/batik

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -65230,7 +65230,8 @@ CVE-2020-11989 (Apache Shiro before 1.5.3, when using Apache Shiro with Spring d
 CVE-2020-11988 (Apache XmlGraphics Commons 2.4 is vulnerable to server-side request fo ...)
 	TODO: check
 CVE-2020-11987 (Apache Batik 1.13 is vulnerable to server-side request forgery, caused ...)
-	TODO: check
+	- batik <unfixed>
+	TODO: check fixing commits
 CVE-2020-11986 (To be able to analyze gradle projects, the build scripts need to be ex ...)
 	- netbeans 12.1-1
 	[stretch] - netbeans <no-dsa> (Minor issue)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/10d9fc13622cbf30094ef3745ce93cb07c2c743f

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/10d9fc13622cbf30094ef3745ce93cb07c2c743f
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20210224/6e9e3d15/attachment.htm>


More information about the debian-security-tracker-commits mailing list