[Git][security-tracker-team/security-tracker][master] Add "new" undertow issue

Salvatore Bonaccorso (@carnil) carnil at debian.org
Fri Jan 30 21:01:37 GMT 2026



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
1a74af25 by Salvatore Bonaccorso at 2026-01-30T22:00:40+01:00
Add "new" undertow issue

The only reference so far is the Red Hat bugzilla entry which though is
restricted at this point in time. Keep it thus undetermined.

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -84,7 +84,8 @@ CVE-2025-13176 (Planting a custom configuration file  in   ESET Inspect Connecto
 CVE-2024-9432 (Cleartext Storage of Sensitive Information vulnerability in OpenText\u ...)
 	NOT-FOR-US: OpenText
 CVE-2024-4027 (A flaw was found in Undertow. Servlets using a method that calls HttpS ...)
-	TODO: check
+	- undertow <undetermined>
+	TODO: check details
 CVE-2020-37060 (Atomic Alarm Clock 6.3 contains a local privilege escalation vulnerabi ...)
 	TODO: check
 CVE-2020-37059 (Popcorn Time 6.2.1.14 contains an unquoted service path vulnerability  ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/1a74af25fb5c2550e1bcd3934d362cd7cb25f923

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/1a74af25fb5c2550e1bcd3934d362cd7cb25f923
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260130/4631fd21/attachment-0001.htm>


More information about the debian-security-tracker-commits mailing list