[Git][security-tracker-team/security-tracker][master] Reserve DLA-4299-1 for jetty9
Adrian Bunk (@bunk)
bunk at debian.org
Sun Sep 14 20:00:33 BST 2025
Adrian Bunk pushed to branch master at Debian Security Tracker / security-tracker
Commits:
4448a483 by Adrian Bunk at 2025-09-14T22:00:22+03:00
Reserve DLA-4299-1 for jetty9
- - - - -
2 changed files:
- data/DLA/list
- data/dla-needed.txt
Changes:
=====================================
data/DLA/list
=====================================
@@ -1,3 +1,6 @@
+[14 Sep 2025] DLA-4299-1 jetty9 - security update
+ {CVE-2025-5115}
+ [bullseye] - jetty9 9.4.57-0+deb11u3
[11 Sep 2025] DLA-4298-1 cups - security update
{CVE-2025-58060 CVE-2025-58364}
[bullseye] - cups 2.3.3op2-3+deb11u10
=====================================
data/dla-needed.txt
=====================================
@@ -188,9 +188,6 @@ intel-microcode
jackson-core
NOTE: 20250707: Added by Front-Desk (apo)
--
-jetty9 (bunk)
- NOTE: 20250827: Added by Front-Desk (rouca)
---
knot-resolver
NOTE: 20240924: Added by Front-Desk (lamby)
NOTE: 20250506: Writting to upstream to get a PoC to reproduce open CVEs.
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/4448a483ac21a222e32332a693d0ad1c1d9cdbb0
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/4448a483ac21a222e32332a693d0ad1c1d9cdbb0
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20250914/0402dff2/attachment-0001.htm>
More information about the debian-security-tracker-commits
mailing list