[Git][security-tracker-team/security-tracker][master] Add two new libjettison-java issues

Salvatore Bonaccorso (@carnil) carnil at debian.org
Sun Dec 18 19:55:42 GMT 2022



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
847fcf32 by Salvatore Bonaccorso at 2022-12-18T20:53:45+01:00
Add two new libjettison-java issues

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -6416,7 +6416,8 @@ CVE-2022-45695
 CVE-2022-45694
 	RESERVED
 CVE-2022-45693 (Jettison before v1.5.2 was discovered to contain a stack overflow via  ...)
-	TODO: check
+	- libjettison-java <unfixed>
+	NOTE: https://github.com/jettison-json/jettison/issues/52
 CVE-2022-45692
 	RESERVED
 CVE-2022-45691
@@ -6432,7 +6433,8 @@ CVE-2022-45687
 CVE-2022-45686
 	RESERVED
 CVE-2022-45685 (A stack overflow in Jettison before v1.5.2 allows attackers to cause a ...)
-	TODO: check
+	- libjettison-java <unfixed>
+	NOTE: https://github.com/jettison-json/jettison/issues/54
 CVE-2022-45684
 	RESERVED
 CVE-2022-45683



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/847fcf325213c8913ba3a41fda65c61f98249e1e

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/847fcf325213c8913ba3a41fda65c61f98249e1e
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20221218/d5692fc8/attachment.htm>


More information about the debian-security-tracker-commits mailing list