[Git][security-tracker-team/security-tracker][master] Mark open CVE for libcommons-compress-java as fixed in unstable

Markus Koschany (@apo) apo at debian.org
Mon Sep 20 20:43:09 BST 2021



Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker


Commits:
be7728c1 by Markus Koschany at 2021-09-20T21:42:04+02:00
Mark open CVE for libcommons-compress-java as fixed in unstable

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -12347,7 +12347,7 @@ CVE-2021-3632
 	RESERVED
 	NOT-FOR-US: Keycloak
 CVE-2021-36090 (When reading a specially crafted ZIP archive, Compress can be made to  ...)
-	- libcommons-compress-java <unfixed> (bug #991041)
+	- libcommons-compress-java 1.21-1 (bug #991041)
 	[bullseye] - libcommons-compress-java <no-dsa> (Minor issue)
 	[buster] - libcommons-compress-java <no-dsa> (Minor issue)
 	[stretch] - libcommons-compress-java <no-dsa> (Minor issue)
@@ -13696,19 +13696,19 @@ CVE-2021-35519
 CVE-2021-35518
 	RESERVED
 CVE-2021-35517 (When reading a specially crafted TAR archive, Compress can be made to  ...)
-	- libcommons-compress-java <unfixed> (bug #991041)
+	- libcommons-compress-java 1.21-1 (bug #991041)
 	[bullseye] - libcommons-compress-java <no-dsa> (Minor issue)
 	[buster] - libcommons-compress-java <no-dsa> (Minor issue)
 	[stretch] - libcommons-compress-java <no-dsa> (Minor issue)
 	NOTE: https://www.openwall.com/lists/oss-security/2021/07/13/3
 CVE-2021-35516 (When reading a specially crafted 7Z archive, Compress can be made to a ...)
-	- libcommons-compress-java <unfixed> (bug #991041)
+	- libcommons-compress-java 1.21-1 (bug #991041)
 	[bullseye] - libcommons-compress-java <no-dsa> (Minor issue)
 	[buster] - libcommons-compress-java <no-dsa> (Minor issue)
 	[stretch] - libcommons-compress-java <no-dsa> (Minor issue)
 	NOTE: https://www.openwall.com/lists/oss-security/2021/07/13/2
 CVE-2021-35515 (When reading a specially crafted 7Z archive, the construction of the l ...)
-	- libcommons-compress-java <unfixed> (bug #991041)
+	- libcommons-compress-java 1.21-1 (bug #991041)
 	[bullseye] - libcommons-compress-java <no-dsa> (Minor issue)
 	[buster] - libcommons-compress-java <no-dsa> (Minor issue)
 	[stretch] - libcommons-compress-java <no-dsa> (Minor issue)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/be7728c15327912f41ba24f9ee94eae0b2be8cf2

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/be7728c15327912f41ba24f9ee94eae0b2be8cf2
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20210920/fbb3652a/attachment.htm>


More information about the debian-security-tracker-commits mailing list