Bug#763958: marked as done (CVE-2014-6439: elasticsearch: default configuration for CORS allows an attacker to craft links)

Debian Bug Tracking System owner at bugs.debian.org
Wed Oct 22 13:36:12 UTC 2014


Your message dated Wed, 22 Oct 2014 13:33:56 +0000
with message-id <E1Xgw32-00079v-Tr at franck.debian.org>
and subject line Bug#763958: fixed in elasticsearch 1.0.3+dfsg-4
has caused the Debian Bug report #763958,
regarding CVE-2014-6439: elasticsearch: default configuration for CORS allows an attacker to craft links
to be marked as done.

This means that you claim that the problem has been dealt with.
If this is not the case it is now your responsibility to reopen the
Bug report if necessary, and/or fix the problem forthwith.

(NB: If you are a system administrator and have no idea what this
message is talking about, this may indicate a serious mail system
misconfiguration somewhere. Please contact owner at bugs.debian.org
immediately.)


-- 
763958: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=763958
Debian Bug Tracking System
Contact owner at bugs.debian.org with problems
-------------- next part --------------
An embedded message was scrubbed...
From: Henri Salo <henri at nerv.fi>
Subject: CVE-2014-6439: elasticsearch: default configuration for CORS allows an attacker to craft links
Date: Sat, 4 Oct 2014 12:10:55 +0300
Size: 3298
URL: <http://lists.alioth.debian.org/pipermail/pkg-java-maintainers/attachments/20141022/bf841f56/attachment.mht>
-------------- next part --------------
An embedded message was scrubbed...
From: Tim Potter <tpot at hp.com>
Subject: Bug#763958: fixed in elasticsearch 1.0.3+dfsg-4
Date: Wed, 22 Oct 2014 13:33:56 +0000
Size: 5238
URL: <http://lists.alioth.debian.org/pipermail/pkg-java-maintainers/attachments/20141022/bf841f56/attachment-0001.mht>


More information about the pkg-java-maintainers mailing list