[Git][security-tracker-team/security-tracker][master] Reserve DLA-3384-1 for tomcat9
Markus Koschany (@apo)
apo at debian.org
Wed Apr 5 20:42:35 BST 2023
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker
Commits:
743234c3 by Markus Koschany at 2023-04-05T21:42:21+02:00
Reserve DLA-3384-1 for tomcat9
- - - - -
2 changed files:
- data/CVE/list
- data/DLA/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -42818,7 +42818,6 @@ CVE-2022-42253
CVE-2022-42252 (If Apache Tomcat 8.5.0 to 8.5.82, 9.0.0-M1 to 9.0.67, 10.0.0-M1 to 10. ...)
- tomcat9 9.0.68-1
[bullseye] - tomcat9 <postponed> (Minor issue, fix along in future update)
- [buster] - tomcat9 <no-dsa> (Minor issue, occurs when system is explicitly configured in an insecure way)
- tomcat8 <removed>
NOTE: https://lists.apache.org/thread/zzcxzvqfdqn515zfs3dxb7n8gty589sq
NOTE: https://github.com/apache/tomcat/commit/4c7f4fd09d2cc1692112ef70b8ee23a7a037ae77 (9.0.68)
=====================================
data/DLA/list
=====================================
@@ -1,3 +1,6 @@
+[05 Apr 2023] DLA-3384-1 tomcat9 - security update
+ {CVE-2022-42252 CVE-2023-28708}
+ [buster] - tomcat9 9.0.31-1~deb10u8
[05 Apr 2023] DLA-3383-1 grunt - security update
{CVE-2022-1537}
[buster] - grunt 1.0.1-8+deb10u2
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/743234c38e09e5d1474d68e9395e716ad3c2df72
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/743234c38e09e5d1474d68e9395e716ad3c2df72
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20230405/8b343738/attachment.htm>
More information about the debian-security-tracker-commits
mailing list