[Git][security-tracker-team/security-tracker][master] Add CVE-2020-27223/jetty

Salvatore Bonaccorso carnil at debian.org
Sat Feb 27 10:59:55 GMT 2021



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
8917ca51 by Salvatore Bonaccorso at 2021-02-27T11:59:37+01:00
Add CVE-2020-27223/jetty

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -30725,7 +30725,9 @@ CVE-2020-27225
 CVE-2020-27224 (In Eclipse Theia versions up to and including 1.2.0, the Markdown Prev ...)
 	NOT-FOR-US: Eclipse Theia
 CVE-2020-27223 (In Eclipse Jetty 9.4.6.v20170531 to 9.4.36.v20210114 (inclusive), 10.0 ...)
-	TODO: check
+	- jetty9 <unfixed>
+	NOTE: https://bugs.eclipse.org/bugs/show_bug.cgi?id=571128
+	NOTE: https://github.com/eclipse/jetty.project/security/advisories/GHSA-m394-8rww-3jr7
 CVE-2020-27222 (In Eclipse Californium version 2.3.0 to 2.6.0, the certificate based ( ...)
 	NOT-FOR-US: Eclipse Californium
 CVE-2020-27221 (In Eclipse OpenJ9 up to and including version 0.23, there is potential ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/8917ca51dd2bf576dc1a889d529d49ea36acfb5a

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/8917ca51dd2bf576dc1a889d529d49ea36acfb5a
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20210227/ce5ff61f/attachment.htm>


More information about the debian-security-tracker-commits mailing list