[Git][security-tracker-team/security-tracker][master] Add references for CVE-2024-1635

Salvatore Bonaccorso (@carnil) carnil at debian.org
Fri Jan 3 19:23:20 GMT 2025



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
d2637c0d by Salvatore Bonaccorso at 2025-01-03T20:22:50+01:00
Add references for CVE-2024-1635

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -91188,6 +91188,8 @@ CVE-2022-48625 (Yealink Config Encrypt Tool add RSA before 1.2 has a built-in RS
 CVE-2024-1635 (A vulnerability was found in Undertow. This vulnerability impacts a se ...)
 	- undertow 2.3.18-1 (bug #1068817)
 	NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=2264928
+	NOTE: https://github.com/advisories/GHSA-w6qf-42m7-vh68
+	NOTE: Fixed by: https://github.com/undertow-io/undertow/commit/7d388c5aae9b82afb63f24e3b6a2044838dfb4de
 CVE-2024-25983 (Insufficient checks in a web service made it possible to add comments  ...)
 	- moodle <removed>
 CVE-2024-25982 (The link to update all installed language packs did not include the ne ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/d2637c0d6e0ebbeb1850f1ed9002d85907beead4

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/d2637c0d6e0ebbeb1850f1ed9002d85907beead4
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20250103/77e862ed/attachment.htm>


More information about the debian-security-tracker-commits mailing list