[Git][security-tracker-team/security-tracker][master] CVE-2024-54677,tomcat9: bullseye is ignored

Markus Koschany (@apo) apo at debian.org
Wed Jan 15 23:35:56 GMT 2025



Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker


Commits:
ad4154bd by Markus Koschany at 2025-01-16T00:34:47+01:00
CVE-2024-54677,tomcat9: bullseye is ignored

This issue only affects the tomcatX-examples package which is not used in
production. It is merely intended to test server configurations on localhost.

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -8096,6 +8096,7 @@ CVE-2024-54677 (Uncontrolled Resource Consumption vulnerability in the examples
 	- tomcat10 10.1.34-1
 	[bookworm] - tomcat10 <no-dsa> (Minor issue)
 	- tomcat9 9.0.70-2
+	[bullseye] - tomcat9 <ignored> (Minor issue)
 	NOTE: Starting with 9.0.70-2 src:tomcat9 no longer ships the server stack, using that as the fixed version
 	NOTE: https://lists.apache.org/thread/tdtbbxpg5trdwc2wnopcth9ccvdftq2n
 	NOTE: https://github.com/apache/tomcat/commit/f57a9d9847c1038be61f5818d73b8be907c460d4 (10.1.34)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/ad4154bd5bc56284880de996fd53639adfd3364b

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/ad4154bd5bc56284880de996fd53639adfd3364b
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20250115/bf1bdccc/attachment.htm>


More information about the debian-security-tracker-commits mailing list