[Git][security-tracker-team/security-tracker][master] 2 commits: CVE-2021-3629,undertow: fixed in unstable

Markus Koschany (@apo) apo at debian.org
Tue Aug 2 18:47:06 BST 2022



Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker


Commits:
97ec6f0f by Markus Koschany at 2022-08-02T19:46:51+02:00
CVE-2021-3629,undertow: fixed in unstable

according to Red Hat this issue was fixed in version 2.2.11. The first fixing
version in Debian was 2.2.12. No further details are available

See https://bugzilla.redhat.com/show_bug.cgi?id=1977362

- - - - -
e06d1892 by Markus Koschany at 2022-08-02T19:46:52+02:00
CVE-2022-1319,undertow: fixed in unstable

fixed in 2.2.17-1

See https://access.redhat.com/errata/RHSA-2022:4918

and the original Red Hat bug report

https://bugzilla.redhat.com/show_bug.cgi?id=2073890

No further details are available

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -22181,7 +22181,7 @@ CVE-2022-29064
 	RESERVED
 CVE-2022-1319
 	RESERVED
-	- undertow <unfixed> (bug #1016448)
+	- undertow 2.2.17-1 (bug #1016448)
 	NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=2073890
 CVE-2022-1318 (Hills ComNav version 3002-19 suffers from a weak communication channel ...)
 	NOT-FOR-US: Hills ComNav
@@ -75171,7 +75171,7 @@ CVE-2021-3630 (An out-of-bounds write vulnerability was found in DjVuLibre in DJ
 	NOTE: https://sourceforge.net/p/djvu/bugs/302/
 	NOTE: https://sourceforge.net/p/djvu/djvulibre-git/ci/7b0ef20690e08f1fe124aebbf42f6310e2f40f81/
 CVE-2021-3629 (A flaw was found in Undertow. A potential security issue in flow contr ...)
-	- undertow <unfixed> (bug #1016448)
+	- undertow 2.2.12-1 (bug #1016448)
 	NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=1977362
 	NOTE: Make sure to also address followup tracked as CVE-2022-1259:
 	NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=2072339



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/compare/310cf129cf1d344144ff53fc245aa925f747bf7e...e06d18926b1aef65234c1ea5faa7dd24f2b0eb3d

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/compare/310cf129cf1d344144ff53fc245aa925f747bf7e...e06d18926b1aef65234c1ea5faa7dd24f2b0eb3d
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20220802/bbd527fa/attachment-0001.htm>


More information about the debian-security-tracker-commits mailing list