[Git][security-tracker-team/security-tracker][master] Reassociate CVE-2017-14735 with libowasp-antisamy-java

Salvatore Bonaccorso (@carnil) carnil at debian.org
Mon Apr 25 18:08:29 BST 2022



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
389c8e87 by Salvatore Bonaccorso at 2022-04-25T19:07:43+02:00
Reassociate CVE-2017-14735 with libowasp-antisamy-java

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -294978,7 +294978,8 @@ CVE-2017-14737 (A cryptographic cache-based side channel in the RSA implementati
 CVE-2017-14736
 	RESERVED
 CVE-2017-14735 (OWASP AntiSamy before 1.5.7 allows XSS via HTML5 entities, as demonstr ...)
-	NOT-FOR-US: OWASP AntiSamy
+	- libowasp-antisamy-java <unfixed>
+	NOTE: https://github.com/nahsra/antisamy/issues/10
 CVE-2017-14734 (The build_msps function in libbpg.c in libbpg 0.9.7 allows remote atta ...)
 	NOT-FOR-US: libbpg
 CVE-2017-14733 (ReadRLEImage in coders/rle.c in GraphicsMagick 1.3.26 mishandles RLE h ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/389c8e87e3d4d2e28945e1ed73ea196b89646166

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/389c8e87e3d4d2e28945e1ed73ea196b89646166
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20220425/b48e50a8/attachment-0001.htm>


More information about the debian-security-tracker-commits mailing list