[Git][security-tracker-team/security-tracker][master] CVE-2019-19343,undertow: fixed in unstable

Markus Koschany (@apo) apo at debian.org
Tue Aug 2 18:28:58 BST 2022



Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker


Commits:
02c98452 by Markus Koschany at 2022-08-02T19:28:46+02:00
CVE-2019-19343,undertow: fixed in unstable

in version 2.0.25-1. According to Red Hat version 2.0.25 fixed the problem. The fix
"was a change in remoting however, it manifested in an Undertow use case". No
further details are available.

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -194499,7 +194499,7 @@ CVE-2019-19344 (There is a use-after-free issue in all samba 4.9.x versions befo
 	[jessie] - samba <not-affected> (Only affects Samba 4.9 onwards)
 	NOTE: https://www.samba.org/samba/security/CVE-2019-19344.html
 CVE-2019-19343 (A flaw was found in Undertow when using Remoting as shipped in Red Hat ...)
-	- undertow <unfixed> (bug #948024; unimportant)
+	- undertow 2.0.25-1 (bug #948024; unimportant)
 	NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=1780445
 	NOTE: Issue affects both Undertow and rmeoting, but for adressing the immediate
 	NOTE: issue only af fix via remoting (https://issues.redhat.com/browse/REM3-347)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/02c984526e4ebf6b7bd46c00768120a7425456eb

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/02c984526e4ebf6b7bd46c00768120a7425456eb
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20220802/df47473a/attachment.htm>


More information about the debian-security-tracker-commits mailing list