[Git][security-tracker-team/security-tracker][master] Reserve DLA-4299-1 for jetty9

Adrian Bunk (@bunk) bunk at debian.org
Sun Sep 14 20:00:33 BST 2025



Adrian Bunk pushed to branch master at Debian Security Tracker / security-tracker


Commits:
4448a483 by Adrian Bunk at 2025-09-14T22:00:22+03:00
Reserve DLA-4299-1 for jetty9

- - - - -


2 changed files:

- data/DLA/list
- data/dla-needed.txt


Changes:

=====================================
data/DLA/list
=====================================
@@ -1,3 +1,6 @@
+[14 Sep 2025] DLA-4299-1 jetty9 - security update
+	{CVE-2025-5115}
+	[bullseye] - jetty9 9.4.57-0+deb11u3
 [11 Sep 2025] DLA-4298-1 cups - security update
 	{CVE-2025-58060 CVE-2025-58364}
 	[bullseye] - cups 2.3.3op2-3+deb11u10


=====================================
data/dla-needed.txt
=====================================
@@ -188,9 +188,6 @@ intel-microcode
 jackson-core
   NOTE: 20250707: Added by Front-Desk (apo)
 --
-jetty9 (bunk)
-  NOTE: 20250827: Added by Front-Desk (rouca)
---
 knot-resolver
   NOTE: 20240924: Added by Front-Desk (lamby)
   NOTE: 20250506: Writting to upstream to get a PoC to reproduce open CVEs.



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/4448a483ac21a222e32332a693d0ad1c1d9cdbb0

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/4448a483ac21a222e32332a693d0ad1c1d9cdbb0
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20250914/0402dff2/attachment-0001.htm>


More information about the debian-security-tracker-commits mailing list