[Git][security-tracker-team/security-tracker][master] new shiro issue

Moritz Muehlenhoff (@jmm) jmm at debian.org
Mon Jan 16 15:32:15 GMT 2023



Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker


Commits:
e0194095 by Moritz Muehlenhoff at 2023-01-16T16:31:41+01:00
new shiro issue

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -3089,7 +3089,8 @@ CVE-2014-125039 (A vulnerability, which was classified as problematic, has been
 CVE-2010-10003 (A vulnerability classified as critical was found in gesellix titlelink ...)
 	NOT-FOR-US: gesellix titlelink
 CVE-2023-22602 (When using Apache Shiro before 1.11.0 together with Spring Boot 2.6+,  ...)
-	TODO: check
+	- shiro <unfixed>
+	NOTE: https://lists.apache.org/thread/dzj0k2smpzzgj6g666hrbrgsrlf9yhkl
 CVE-2023-22601 (InHand Networks InRouter 302, prior to version IR302 V3.5.56, and InRo ...)
 	NOT-FOR-US: InHand Networks InRouter
 CVE-2023-22600 (InHand Networks InRouter 302, prior to version IR302 V3.5.56, and InRo ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/e01940958eb7085d2817ed9b786c687f1334b44c

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/e01940958eb7085d2817ed9b786c687f1334b44c
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20230116/211c1c9c/attachment.htm>


More information about the debian-security-tracker-commits mailing list