[Git][security-tracker-team/security-tracker][master] apache-jena CVE fixed in unstable

Markus Koschany (@apo) apo at debian.org
Sat Sep 24 13:35:14 BST 2022



Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker


Commits:
e0206a43 by Markus Koschany at 2022-09-24T14:34:36+02:00
apache-jena CVE fixed in unstable

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -33606,7 +33606,7 @@ CVE-2022-1290 (Stored XSS in "Name", "Group Name" & "Title" in GitHub reposi
 CVE-2022-1289 (A denial of service vulnerability was found in tildearrow Furnace. It  ...)
 	- furnace <itp> (bug #1008592)
 CVE-2022-28890 (A vulnerability in the RDF/XML parser of Apache Jena allows an attacke ...)
-	- apache-jena <unfixed> (bug #1014982)
+	- apache-jena 4.5.0-1 (bug #1014982)
 	NOTE: https://www.openwall.com/lists/oss-security/2022/05/04/1
 CVE-2021-4226
 	RESERVED
@@ -77959,7 +77959,7 @@ CVE-2021-39240 (An issue was discovered in HAProxy 2.2 before 2.2.16, 2.3 before
 	NOTE: https://git.haproxy.org/?p=haproxy.git;a=commit;h=4b8852c70d8c4b7e225e24eb58258a15eb54c26e
 	NOTE: https://git.haproxy.org/?p=haproxy.git;a=commit;h=a495e0d94876c9d39763db319f609351907a31e8
 CVE-2021-39239 (A vulnerability in XML processing in Apache Jena, in versions up to 4. ...)
-	- apache-jena <unfixed> (bug #1014982)
+	- apache-jena 4.5.0-1 (bug #1014982)
 	NOTE: https://lists.apache.org/thread/qpbfrdty7jt3yfm39hx4p9dp151sd6gm
 CVE-2021-39238 (Certain HP Enterprise LaserJet, HP LaserJet Managed, HP Enterprise Pag ...)
 	NOT-FOR-US: HP
@@ -92899,7 +92899,7 @@ CVE-2021-33193 (A crafted method sent through HTTP/2 will bypass validation and
 	NOTE: https://git.centos.org/rpms/httpd/blob/c496dea5e0b6e82a9f503e973fc5d5ea93a94180/f/SOURCES/httpd-2.4.37-CVE-2021-33193.patch (2.4.37)
 	NOTE: http://launchpadlibrarian.net/559974735/apache2_2.4.29-1ubuntu4.16_2.4.29-1ubuntu4.17.diff.gz (2.4.29)
 CVE-2021-33192 (A vulnerability in the HTML pages of Apache Jena Fuseki allows an atta ...)
-	- apache-jena <unfixed> (bug #1014982)
+	- apache-jena 4.5.0-1 (bug #1014982)
 	NOTE: https://lists.apache.org/thread/sq6q94q0prqwr9vdm2wptglcq1kv98k8
 CVE-2021-33191 (From Apache NiFi MiNiFi C++ version 0.5.0 the c2 protocol implements a ...)
 	NOT-FOR-US: Apache NiFi



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/e0206a43ed4a01136361bd80c6b096dfe9033fd6

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/e0206a43ed4a01136361bd80c6b096dfe9033fd6
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20220924/657ce87c/attachment.htm>


More information about the debian-security-tracker-commits mailing list